U.S. flag   An unofficial archive of your favorite United States government website
Dot gov

Official websites do not use .rip
We are an unofficial archive, replace .rip by .gov in the URL to access the official website. Access our document index here.

Https

We are building a provable archive!
A lock (Dot gov) or https:// don't prove our archive is authentic, only that you securely accessed it. Note that we are working to fix that :)

Cryptographic Module Validation Program CMVP

Certificate #3990

Details

Module Name
i.MX 8X SECO HSM
Standard
FIPS 140-2
Status
Active
Sunset Date
7/19/2026
Overall Level
3
Caveat
When operated in FIPS mode and utilizing a Trusted Path as specified in the Security Policy
Module Type
Hardware
Embodiment
Single Chip
Description
The i.MX 8X HSM extends the rich capabilities of the i.MX 8X family of products with advanced security and cryptographic capabilities. These HSM extensions implemented in the i.MX 8X integrated cryptographic module offer OEMs the capability to configure the part in the desired FIPS mode to support V2X or IoT use cases and more. The i.MX 8X cryptographic module is an integral part of the NXP i.MX 8X application processors and can be used together with other features offered by these SOCs to reduce both the OEM design bill of materials as well as time to market in security critical applications.
Tested Configuration(s)
  • [Version number: SOC_iMX8_QuadX_CMOS28FDSOI_1.88
  • MiMX8DX6FVLFZAC, MiMX8DX5FVLFZAC, MiMX8DX4FVLFZAC, MiMX8DX3FVLFZAC, MiMX8DX2FVLFZAC, MiMX8DX1FVLFZAC, MiMX8DX6GVLFZAC, MiMX8DX5GVLFZAC
  • MiMX8UX6FVLFZAC, MiMX8UX5FVLFZAC, MiMX8UX2FVLFZAC, MiMX8UX1FVLFZAC, MiMX8UX6GVLFZAC, MiMX8UX5GVLFZAC]
  • P/Ns: MiMX8QX6FVLFZAC, MiMX8QX5FVLFZAC, MiMX8QX2FVLFZAC, MiMX8QX1FVLFZAC, MiMX8QX6GVLFZAC, MiMX8QX5GVLFZAC, PIMX8QX6AVLFZAC, PIMX8QX6FVLFZAC
FIPS Algorithms
AES Certs. #C1951, #C1954, #C1956 and #C1958
CKG vendor affirmed
CVL Cert. #C1957
DRBG Cert. #C1955
ECDSA Cert. #C1957
ENT P
KBKDF Cert. #C1959
KTS AES Cert. #C1958
RSA Cert. #C1953
SHS Certs. #C1952 and #C1955
Allowed Algorithms
ECDSA (Cert. #C1957; when used with non-approved BrainpoolP256R1 and BrainpoolP384R1elliptic curves)
Hardware Versions
P/N: rpp_cm0p_sec_subsys; version tag DA_SSL_iMX8QX_SCU_SUBSYS_LN28FDSOI_1.72.
Firmware Versions
ROM mem_i.MX8QX_s28roml_w20480x032m32B2_1Tlms_m0_1.3; SECO FW 3.7.1

Vendor

NXP Semiconductors
NXP Semiconductors Netherlands B.V. High Tech Campus 60
Eindhoven, Noord-Braban 5656 AG
Netherlands

Andres Lopez De Vergara Lemos
andres.lemos@nxp.com
Phone: +15128156189
Dan Loop
dan.loop@nxp.com
Phone: 512.470.7387

Validation History

Date Type Lab
7/20/2021 Initial UL VERIFICATION SERVICES INC
1/14/2022 Update UL VERIFICATION SERVICES INC