AWS manages the firmware. Firmware is maintained by a third party, and must be evaluated by NIST for FIPS 140-2 Level 3 or FIPS 140-3 Level 3 compliance depending on the hsm type. Only firmware that has been cryptographically signed by the FIPS key, which AWS does not have access to, can be installed.
Did this page help you? - Yes
Thanks for letting us know we're doing a good job!
If you've got a moment, please tell us what we did right so we can do more of it.
Did this page help you? - No
Thanks for letting us know this page needs work. We're sorry we let you down.
If you've got a moment, please tell us how we can make the documentation better.
Next topic:
TroubleshootingPrevious topic:
VPC endpoints (AWS PrivateLink)Need help?
PrivacySite termsCookie preferences
© 2025, Amazon Web Services, Inc. or its affiliates. All rights reserved.