IBM 4770-001 Enterprise PKCS#11 HSM Cryptographic Coprocessor Security Module
Caveat: When operated in FIPS mode
Certificate
| Certificate number | 4558 |
|---|---|
| Standard | FIPS 140-2 |
| Status | active |
| Sunset date | 2026-09-21 |
| Overall level | 4 |
| Module type | Hardware |
| Embodiment | Multi-Chip Embedded |
| Vendor | IBM · website |
| Hardware versions | PN 03JJ471-H07163 POST0 v9398 MB0 v9005 (Standard Power)[1]; PN 03JJ467-H07163 POST0 v9398 MB0 v9005 (Low Power)[1]; PN 03JJ829-N38324 POST0 v8840 MB0 v3606 (Standard Power)[1]; PN 03JJ825-N38324 POST0 v8840 MB0 v3606 (Low Power)[1]; PN 03KY267-H07190 POST0 v8840 MB0 v3606 (Standard Power)[1]; PN 03KY263-H07190 POST0 v8840 MB0 v3606 (Low Power)[1]; PN 03NH208-H07282 POST0 v8840 MB0 v3606 (Standard Power)[2]; PN 03NH207-H07282 POST0 v8840 MB0 v3606 (Low Power)[2]; PN 03KY759-H07282 POST0 v8840 MB0 v3606 (Standard Power)[2]; PN 03KY755-H07282 POST0 v8840 MB0 v3606 (Low Power)[2] |
| Firmware versions | 8.0.37z P3592 M3592 P4630 F0D0B [1] and 8.0.53z P6936 M6936 P4630 F0D0B [2] for segment 1, 5E8E 728A [1] and 22C3 5978 [2] for segment 2, 77FA 9138 [1] and 75E0 3BCE [2] for segment 3 |
Module description
The IBM 4770-001 Enterprise PKCS#11 Hardware Security Module is in the form or a PCIe card that executes IBM Enterprise PKCS#11 firmware within a secured tamper responding hardware boundary.
Security level exceptions
- Mitigation of Other Attacks: N/A
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | A2495 |
| CKG | vendor affirmed |
| DRBG | A2427, A2431, A2471, A2495 |
| DSA | A2471 |
| ECDSA | A2427, A2431, A2495 |
| ENT | |
| HMAC | A2495 |
| KAS-SSC | A2471, A2495 |
| KBKDF | A2495 |
| KDA | A2495 |
| KTS | |
| KTS | |
| RSA | A2495 |
| SHA-3 | A2495 |
| SHS | A2471, A2495 |
| Triple-DES | A2495 |
Tested configurations
- N/A
Validation history
| Date | Type | Lab |
|---|---|---|
| 2023-08-18 | Initial | atsec information security corporation |
| 2025-03-07 | Update | atsec information security corporation |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status active
- Validation dates on record: 2023-08-18, 2025-03-07