X5 Postal Security Device (PSD)
X5 Postal Security Device (PSD), from Pitney Bowes, Inc., holds FIPS 140-3 certificate #4933 at overall level 3. The validation is active, with a sunset date of 2029-12-23. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.
Caveat: Interim Validation; When operated in approved mode; No assurance of the minimum strength of generated SSPs (e.g., keys).
Certificate
| Certificate number | 4933 |
|---|---|
| Standard | FIPS 140-3 |
| Status | active |
| Sunset date | 2029-12-23 |
| Overall level | 3 |
| Module type | Hardware |
| Embodiment | Single Chip |
| Vendor | Pitney Bowes, Inc. · website |
| Hardware versions | Maxim Integrated MAX32590 DeepCover Secure Microcontroller - Revision B4 |
| Firmware versions | PSD Application: 22.01.000D & 22.01.000F Device Abstraction Layer (DAL): 02.01.000F & 02.01.00013 |
Module description
Quoted from the NIST CMVP entry for this certificate.
The X5 Postal Security Device (PSD) is a single-chip cryptographic module designed by Pitney Bowes, Inc. (PB) to conform with FIPS 140-3 Security Level 3 requirements. The device includes the Maxim Integrated MAX32590 DeepCover Secure Microcontroller hardware component. The PSD Application and DAL are compiled into a single firmware. The X5 Postal Security Device (PSD) provides cryptographic services to a host device (i.e., Digital Postage Meter), to support postage evidence in the form of an indicium. A PSD provides protection that includes ensuring the secrecy of sensitive security parameters (SSPs) such as cryptographic keys and providing data integrity protection for funds relevant data items (FRDIs) such as accounting data. SSPs and FRDIs reside inside the strong physical protections of the X5 Postal Security Device (PSD).
Security level exceptions
- Operational environment: N/A
- Non-invasive security: N/A
- Mitigation of other attacks: N/A
Approved algorithms (13)
| Algorithm | CAVP certificates |
|---|---|
| AES-CBC | A2435 |
| AES-ECB | A2435 |
| AES-KW | A2435 |
| ECDSA KeyGen (FIPS186-4) | A2437 |
| ECDSA SigGen (FIPS186-4) | A2437 |
| ECDSA SigVer (FIPS186-4) | A2437 |
| Hash DRBG | A2436 |
| HMAC-SHA2-256 | A2438 |
| KAS-ECC-SSC Sp800-56Ar3 | A2439 |
| KDA OneStep Sp800-56Cr1 | A2439 |
| RSA SigVer (FIPS186-4) | A2440 |
| SHA2-224 | A2441 |
| SHA2-256 | A2441 |
Tested configurations
- N/A
Validation history
| Date | Type | Lab |
|---|---|---|
| 2024-12-24 | Initial | Penumbra Security, Inc. |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status active
- Validation dates on record: 2024-12-24