808bits

IBM 4770-001 Enterprise PKCS#11 HSM Cryptographic Coprocessor Security Module

FIPS 140-2 certificate #4558 · IBM · data as of 2026-08-28
Active. Sunset date 2026-09-21, 23 days away. This is the FIPS 140-2 sunset: after it, agencies may keep the module only in existing systems.
Caveat: When operated in FIPS mode

Certificate

Certificate number4558
StandardFIPS 140-2
Statusactive
Sunset date2026-09-21
Overall level4
Module typeHardware
EmbodimentMulti-Chip Embedded
VendorIBM · website
Hardware versionsPN 03JJ471-H07163 POST0 v9398 MB0 v9005 (Standard Power)[1]; PN 03JJ467-H07163 POST0 v9398 MB0 v9005 (Low Power)[1]; PN 03JJ829-N38324 POST0 v8840 MB0 v3606 (Standard Power)[1]; PN 03JJ825-N38324 POST0 v8840 MB0 v3606 (Low Power)[1]; PN 03KY267-H07190 POST0 v8840 MB0 v3606 (Standard Power)[1]; PN 03KY263-H07190 POST0 v8840 MB0 v3606 (Low Power)[1]; PN 03NH208-H07282 POST0 v8840 MB0 v3606 (Standard Power)[2]; PN 03NH207-H07282 POST0 v8840 MB0 v3606 (Low Power)[2]; PN 03KY759-H07282 POST0 v8840 MB0 v3606 (Standard Power)[2]; PN 03KY755-H07282 POST0 v8840 MB0 v3606 (Low Power)[2]
Firmware versions8.0.37z P3592 M3592 P4630 F0D0B [1] and 8.0.53z P6936 M6936 P4630 F0D0B [2] for segment 1, 5E8E 728A [1] and 22C3 5978 [2] for segment 2, 77FA 9138 [1] and 75E0 3BCE [2] for segment 3

Module description

The IBM 4770-001 Enterprise PKCS#11 Hardware Security Module is in the form or a PCIe card that executes IBM Enterprise PKCS#11 firmware within a secured tamper responding hardware boundary.

Security level exceptions

  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AESA2495
CKGvendor affirmed
DRBGA2427, A2431, A2471, A2495
DSAA2471
ECDSAA2427, A2431, A2495
ENT
HMACA2495
KAS-SSCA2471, A2495
KBKDFA2495
KDAA2495
KTS
KTS
RSAA2495
SHA-3A2495
SHSA2471, A2495
Triple-DESA2495

Tested configurations

  • N/A

Validation history

DateTypeLab
2023-08-18Initialatsec information security corporation
2025-03-07Updateatsec information security corporation

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status active
  • Validation dates on record: 2023-08-18, 2025-03-07

Source documents