808bits

Cryptographic Module for Intel® Platforms' Security Engine Chipset

FIPS 140-2 certificate #4599 · Intel Corporation · data as of 2026-08-28
Historical. Moved to historical list due to sunsetting. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode and installed, initialized and configured as specified in Sections 2.3 and 9.1 of the Security Policy. When entropy is externally loaded, no assurance of the minimum strength of generated keys.

Certificate

Certificate number4599
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeFirmware-Hybrid
EmbodimentMulti-Chip Stand Alone
VendorIntel Corporation · website
Hardware versions3.1
Firmware versions3.0

Module description

The Cryptographic Module for Intel® CSME is a hardware-firmware hybrid module present on Intel® PCH platforms. The module performs crypto functions for CSME applications, including but are not limited to: PTT (Platform Trust Technology), AMT (Active Management Technology), and DAL (Dynamic Application Loader).

Approved algorithms

AlgorithmCAVP certificate
AESC849
CKGvendor affirmed
CVLC849
DRBGC849
ECDSAC849
HMACC849
KBKDFC849
KTS
KTS
KTS
KTS
KTS
KTS
KTSvendor affirmed
RSAC849
SHSC849

Allowed algorithms

NDRNG

Tested configurations

  • Intel Ice Point PCH chipset with CSME device firmware version 13.0.0.1084

Validation history

DateTypeLab
2023-09-13InitialUL Verification Services, Inc.

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2023-09-13

Source documents