808bits

i.MX8 DXL V2X

FIPS 140-3 certificate #4839 · NXP Semiconductors, Inc. · data as of 2026-08-28
Active. Sunset date 2029-10-15, 1143 days away.
Caveat: When utilizing a Trusted Channel as specified in the Security Policy.

Certificate

Certificate number4839
StandardFIPS 140-3
Statusactive
Sunset date2029-10-15
Overall level3
Module typeHardware
EmbodimentSingle Chip
VendorNXP Semiconductors, Inc. · website
Hardware versionsP/N: SECO Block: DA_SSL_iMX8DXL_SCU_SUBSYS_LN28FDSOI_1.56; V2X Block: DA_SSL_iMX8DXL_DB_SUBSYS_CMOS28FDSOI_1.77
Firmware versionsSECO ROM: mem_I.MX8_s28roml_w24576x032m32B2_1Tlms_m0_1.7; V2XP ROM: mem_I.MX8_s28roml_w32768x032m32B2_1Tlm_cm0_rom_1.18; V2XS ROM: mem_I.MX8_s28roml_w45056x032m32B4_1Tlm_empty_1.10; SECO FW 5.9.0; V2X FW 1.2.1
EntropyENT (P)

Module description

N/A

Security level exceptions

  • Operational environment: N/A

Approved algorithms

AlgorithmCAVP certificate
AES-CBCA2953
AES-CBCA2957
AES-CCMA2962
AES-CCMA2968
AES-CMACA2954
AES-CMACA2958
AES-ECBA2953
AES-ECBA2957
AES-GCMA2964
AES-GCMA2964
AES-GCMA2975
AES-GCMA2975
Counter DRBGA2969
Counter DRBGA2970
ECDSA KeyGen (FIPS186-4)A2963
ECDSA KeyGen (FIPS186-4)A2974
ECDSA SigGen (FIPS186-4)A2963
ECDSA SigGen (FIPS186-4)A2974
ECDSA SigVer (FIPS186-4)A2963
ECDSA SigVer (FIPS186-4)A2974
Hash DRBGA2955
HMAC-SHA2-224A2961
HMAC-SHA2-256A2961
HMAC-SHA2-384A2961
HMAC-SHA2-512A2961
KAS-ECC-SSC Sp800-56Ar3A2972
KAS-ECC-SSC Sp800-56Ar3A2977
KDA OneStep Sp800-56Cr1A2965
KDA OneStep Sp800-56Cr1A2976
KDF SP800-108A2966
KDF TLSA2973
KDF TLSA2973
RSA SigVer (FIPS186-4)A2967
SHA2-224A2956
SHA2-224A2959
SHA2-224A2960
SHA2-256A2955
SHA2-256A2956
SHA2-256A2959
SHA2-256A2960
SHA2-384A2956
SHA2-384A2959
SHA2-384A2960
SHA2-512A2956
SHA2-512A2959
SHA2-512A2960
TLS v1.2 KDF RFC7627A2973

Allowed algorithms

ECDSA with non-NIST recommended curves (Provides 128 or 192 bits of encryption strength); Per IG C.A; Use of Brainpool curves, allowed for use per [FIPS 140-3 IG] C.A: - BrainpoolP256R1 (128-bit security strength) - BrainpoolP384R1 (192-bit security strength));EC Diffie-Hellman with non-NIST recommended curves (Provides 128 or 192 bits of encryption strength); Per IGs D.F and C.A; Use of Brainpool curves in KAS, allowed for use per [FIPS 140-3 IG] C.A and [FIPS 140-3 IG] D.F Scenario 3: - BrainpoolP256R1 (available for both KEK and TLS use cases; 128-bit security strength) - BrainpoolP384R1 (available only for TLS use case; 192-bit security strength))

Tested configurations

  • [SOC_iMX8DualXL_28FDSOI_1.75 (P/Ns MIMX8SL2AVNFZAB, PIMX8SL2AVNFZAB, MIMX8DL2AVNFZAB, PIMX8DL2AVNFZAB)]

Validation history

DateTypeLab
2024-10-16InitialAcumen Security

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status active
  • Validation dates on record: 2024-10-16

Source documents