HSM Alarm Codes
ALM ID | Alarm Message | Description | Info |
---|---|---|---|
Host Driver | Tamper
Flag |
||
0001 | Soft tamper - over voltage | HSM voltage is above the operating range. HSM will stay in reset until voltage goes back in range. | HCCSR: VST |
0002 | Soft tamper - temperature (nnC) | HSM temperature (nn degrees Celsius) is outside the range (-2C to 80C). HSM will stay in reset until temperature goes back in range. | HRCSR: TST |
0003 | Soft tamper - indeterminate cause | A soft tamper occurred but cannot determine the cause. | |
0004 | Hard tamper - high temperature | HSM temperature is higher than 88C. | HT_T |
0005 | Hard tamper - low temperature | HSM temperature is lower than -40C | LT_T |
0006 | Hard tamper - over voltage | HSM voltage is higher than the maximum allowed. | OV_T, TC3_T |
0009 | Hard tamper - oscillator failure | HSM tamper clock oscillator has failed | OSC_T |
0010 | Decommission signal triggered | Decommission button (connector P9) has been pressed. | TC2_T |
0011 | Hard tamper - indeterminate cause | A hard tamper occurred but cannot determine the cause. | |
0012 | Hardware Error | Error detected in device hardware | |
0013 | High Temperature - nnC | HSM has reached nn degrees Celsius and needs to be cooled to avoid tampering | |
0014 | Low Battery | HSM battery voltage is below 2.75V and needs to be replaced soon. | |
0015 | PCIe Link Failure | HSM no longer appears on PCIe bus. Chassis may have been opened. | |
0016 | Device Error | Internal error detected during communications with HSM | |
0017 | Request Timed Out | Request to HSM took too long | |
Boot Loader | Tamper
Flag |
||
1000 | Unknown alarm ID xx in boot loader | Illegal alarm ID used in Boot Loader. | |
1001 | HSM restart required | Soft or hard tamper occurred. HSM needs to be restarted (reset) before firmware is allowed to run. | |
1003 | HSM halted - internal boot loader error | Boot Loader detected an error during diagnostics and did not jump to FW. | |
1004 | Warning - boot loader diagnostic error | Boot Loader detected an error during diagnostics that does not stop execution but needs to be investigated (i.e. fan, VPD, or RTC problems). | |
1005 | HSM FW signature check failed | The FW image on the HSM failed authentication and will not be executed. | |
1006 | Soft tamper temperature/voltage | HSM voltage or temperature is outside the acceptable range. HSM will stay in reset until back in range. | PORSM status reg. |
1007 | Hard tamper - high temperature | HSM voltage or temperature is outside the acceptable range. HSM will stay in reset until back in range. | HT_T |
1008 | Hard tamper - low temperature | HSM temperature is lower than -40C. | LT_T |
1009 | Hard tamper - over voltage | HSM voltage is higher than the maximum allowed. | OV_T, TC3_T |
1012 | Hard tamper - oscillator failure | HSM tamper clock oscillator has failed | OSC_T |
1013 | Hard tamper - tamper configuration invalid | HSM tamper configuration lost (set to defaults) due to power loss. | FS_T |
1014 | Chassis opened | Chassis open switch (connector P7) has been triggered. | TC1_T |
1015 | HSM removed from chassis | HSM was removed from host chassis then re-inserted | CS |
1016 | Decommission signal triggered | Decommission button (connector P9) has been pressed. | TC2_T |
Firmware | |||
2000 | Unknown alarm ID xx in firmware | Illegal alarm ID used in firmware. | |
2001 | High temperature warning activated | HSM temperature is above 75C (FW checks every 2 minutes). This warning will not re-appear unless temperature drops below 75C and goes back up again. | |
2002 | High temperature warning deactivated | HSM temperature has dropped below 75C. | |
2003 | Battery low voltage warning | Battery voltage is below 2.75V (FW checks every hour). This warning will not re-appear unless voltage goes above 2.75V then back down. Battery should to be replaced soon. | |
2004 | Battery depleted | Battery voltage is below 2.5V (FW checks every hour). HSM FW will be halted. Battery must to be replaced. | |
2005 | HSM deactivated | Auto-activation data has been cleared | |
2006 | HSM decommissioned by FW | All user crypto material has been invalidated due to KEK CRC failure, decommission signal, or tamper (if decommission on tamper enabled). | |
2007 | HSM zeroized | All user crypto material has been erased. HSM product credentials still exist. This can occur for a variety of reasons including manual zeroization. | |
2008 | Internal data corruption | Settings to control tamper monitoring are incorrect or Critical Security Parameter data (MTK) is invalid (For L3 card, the tamper monitoring settings if incorrect are corrected. ). Otherwise there was an unexpected tamper security write protection change. | |
2009 | HSM halted - internal firmware error | FW detected an error which caused it to halt itself. Can also be errors generated by the kernel such as: bad exception, out of memory, unrecoverable errors. | |
2010 | HSM locked - tamper clear required | Limited set of FW commands available due to an HSM tamper condition. Tamper needs to be cleared before proceeding. Controlled tamper recovery must be enabled for this message to appear. | |
2011 | HSM unlocked - tamper clear done | Tamper was cleared when in controlled tamper recovery mode. | |
2012 | HSM in secure transport mode | Checked on every FW start-up to remind the user to do a recovery operation. Limited set of FW commands available. | |
2013 | HSM recovered from secure transport mode | HSM in secure transport mode was recovered back to normal mode. | |
2014 | Auto-activation data invalid – HSM deactivated | FW checked auto-activation data validity and failed. Re-activation required. | |
2015 | Hard tamper - high temperature | (L3 only) HSM temperature was higher than 88C. | HT_T |
2016 | Hard tamper - low temperature | (L3 only) HSM temperature was lower than -40C. | LT_T |
2017 | Hard tamper - over voltage | (L3 only) HSM voltage was higher than the maximum allowed. | OV_T, TC3_T |
2018 | Hard tamper - oscillator failure | (L3 only) HSM tamper clock oscillator has failed | OSC_T |
2019 | Hard tamper - tamper configuration invalid | (L3 only) HSM tamper configuration lost (set to defaults) due to power loss. | FS_T |
2020 | Chassis opened | Chassis open switch (connector P7) has been triggered. | TC1_T |
2021 | HSM was removed from chassis | HSM was removed from host chassis just before this FW execution. HSM will be deactivated. | CS |
2022 | Decommission signal triggered | Decommission button (connector P9) has been pressed. | TC2_T |
2023 | HSM fan x failure | Fault detected in HSM on-board fan (fan 1 or fan 2). |