808bits

Crypto Module for Intel® Alder Point PCH Converged Security and Manageability Engine (CSME)

FIPS 140-3 certificate #4749 · Intel Corporation · data as of 2026-08-28
Historical. Replaced by certificate #5365. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: Interim Validation. When operated in approved mode. When initialized and configured as specified in Section 11 of the Security Policy.

Certificate

Certificate number4749
StandardFIPS 140-3
Statushistorical
Overall level2
Module typeFirmware-hybrid
EmbodimentSingle Chip
VendorIntel Corporation · website
Hardware versions4.6.0.0
Firmware versions5.2.0.0
EntropyENT (P)

Module description

The Cryptographic Module for Intel® Converged Security and Manageability Engine(CSME) is a firmware-hybrid module. The module consists of both hardware and firmware. The hardware portion is the Converged Security Engine (CSE) and the firmware portion is the crypto driver process of the Manageability Engine (ME). The two portions form the cryptographic boundary and they combine as Converged Security and Manageability Engine (CSME) to perform cryptographic functions within the Alder Point PCH applications executing on the CSME OS.

Security level exceptions

  • Operational environment: N/A
  • Non-invasive security: N/A

Approved algorithms

AlgorithmCAVP certificate
AES-CBCA3362
AES-CFB128A3362
AES-CMACA3362
AES-CTRA3362
AES-ECBA3362
AES-GCMA3362
AES-OFBA3362
Counter DRBGA3362
ECDSA KeyGen (FIPS186-4)A3362
ECDSA KeyVer (FIPS186-4)A3362
ECDSA SigGen (FIPS186-4)A3362
ECDSA SigVer (FIPS186-4)A3362
HMAC-SHA-1A3362
HMAC-SHA2-224A3362
HMAC-SHA2-256A3362
HMAC-SHA2-384A3362
HMAC-SHA2-512A3362
KAS-ECC Sp800-56Ar3A3362
KDF SP800-108A3362
KTS-IFCA3362
KTS-IFCA3362
RSA Decryption PrimitiveA3362
RSA KeyGen (FIPS186-4)A3362
RSA SigGen (FIPS186-4)A3362
RSA Signature PrimitiveA3362
RSA SigVer (FIPS186-4)A3362
SHA-1A3362
SHA2-224A3362
SHA2-256A3362
SHA2-384A3362
SHA2-512A3362

Tested configurations

  • CSME OS with firmware version 16.1.25.2124 running on Alder Point PCH-M/P with Alder Lake M CPU
  • CSME OS with firmware version 16.1.25.2124 running on Alder Point PCH-M/P with Raptor Lake HX CPU
  • CSME OS with firmware version 16.1.25.2124 running on Alder Point PCH-S with Alder Lake S CPU
  • CSME OS with firmware version 16.1.25.2124 running on Alder Point PCH-S with Raptor Lake P CPU
  • CSME OS with firmware version 16.1.25.2124 running on Alder Point PCH-S with Raptor Lake S CPU

Validation history

DateTypeLab
2024-08-02Initialatsec information security corporation

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2024-08-02

Source documents