SE052F
Certificate
| Certificate number | 5139 |
|---|---|
| Standard | FIPS 140-3 |
| Status | active |
| Sunset date | 2029-03-10 |
| Overall level | 3 |
| Module type | Hardware |
| Embodiment | Single Chip |
| Vendor | NXP Semiconductors, Inc. · website |
| Hardware versions | N7122 A1 |
| Firmware versions | [Platform ID J3R6000373181200 and ROM ID B3375FE9B5508BC4 and Patch ID 0000000000000000 and NXP IoT applet v7.2.22 and NXP SEMS Lite applet v2.0.2.11] |
Module description
The Module, validated to FIPS 140-3 overall Level 3, is a single chip module named SE052F implementing the GlobalPlatform operational environment (Card Manager (ISD/SSD)) and the applications: NXP IoT applet v7.2.22 and NXP SEMS Lite applet v2.0.2.11.
Security level exceptions
- Operational environment: N/A
- Physical security: Level 4
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES-CBC | A2713 |
| AES-CCM | A2713 |
| AES-CMAC | A2713 |
| AES-CTR | A2713 |
| AES-ECB | A2713 |
| AES-GCM | A2714 |
| AES-GMAC | A2714 |
| AES-KW | A2714 |
| Counter DRBG | A2713 |
| ECDSA KeyGen (FIPS186-4) | A2713 |
| ECDSA SigGen (FIPS186-4) | A2713 |
| ECDSA SigVer (FIPS186-4) | A2713 |
| HMAC-SHA-1 | A2713 |
| HMAC-SHA2-256 | A2713 |
| HMAC-SHA2-384 | A2713 |
| HMAC-SHA2-512 | A2713 |
| KAS-ECC-SSC Sp800-56Ar3 | A2713 |
| KDA HKDF Sp800-56Cr1 | A2713 |
| KDA OneStep Sp800-56Cr1 | A2714 |
| KDA OneStep Sp800-56Cr1 | A2715 |
| KDF SP800-108 | A2713 |
| KDF SP800-108 | A2713 |
| KDF TLS | A2714 |
| PBKDF | A2714 |
| RSA Decryption Primitive | A2713 |
| RSA KeyGen (FIPS186-4) | A2713 |
| RSA SigGen (FIPS186-4) | A2713 |
| RSA Signature Primitive | A2713 |
| RSA SigVer (FIPS186-4) | A2713 |
| SHA-1 | A2713 |
| SHA2-224 | A2713 |
| SHA2-256 | A2713 |
| SHA2-384 | A2713 |
| SHA2-512 | A2713 |
Allowed algorithms
AES (Cert. #A2713, key unwrapping; key establishment methodology provides between 128 and 256 bits of encryption strength Per IG D.G; Symmetric key unwrapping (according to RFC3394) );AES (Cert. #A2713, key unwrapping; key establishment methodology provides 128 bits of encryption strength Per IG D.G; Symmetric key unwrapping (according to GlobalPlatform Amendment-I));ECDSA with non-NIST recommended curves (Provides between 112 and 256 bits of encryption strength Per IG C.A; Signature Generation/Verification using non-NIST curves [Brainpool224r1, Brainpool256r1, Brainpool320r, Brainpool384r1, Brainpool512r1, Secp224k1, Secp256k1 with strengths ]112, 128, 192 and 256 bits]);EC Diffie-Hellman with non-NIST recommended curves (Provides between 112 and 256 bits of encryption strength Per IGs D.F and C.A; Shared secret computation using non-NIST curves [Brainpool224r1, Brainpool256r1, Brainpool320r, Brainpool384r1, Brainpool512r1, Secp224k1, Secp256k1 with strengths ]112, 128, 192 and 256 bits])
Tested configurations
- N/A
Validation history
| Date | Type | Lab |
|---|---|---|
| 2026-01-16 | Initial | Acumen Security |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status active
- Validation dates on record: 2026-01-16