HP F5S62A Trusted Platform Module

For Laserjet and OfficeJet Printers

HP F5S62A trusted platform module

The F5S62A trusted platform module is a circuit board housing an independent microprocessor which generates a 2048 bit RSA public and private key pair at manufacture (or power up).   The private key never leaves the chip, the rest of the system communicates with it over I2C using the public key.

A trusted platform printer validates that it is the expected destination, that it's own hardware configuration is unchanged, encypts data to defeat man in the middle attacks and that you have permission to connect.

The US government, military and many other government and financial functions require TPM.   Individuals and small business may be less supportive because it raises copyright, ownership and privacy concerns.

The Trusted Platform Module requires operating system support. It is supported with the latest firmware update using HP FutureSmart 3.0 on the following (in June 2015):

top-right-logo

What HP Say

Recognize and manage risks

The value of data to your organization can not be understated. The more data that you acquire and share, the more security risks and requirements you face. Your imaging and printing environment is not immune to costly security breaches. 2 And while security gaps can leave sensitive data dangerously exposed, the HP Trusted Platform Module (TPM) can help guard against such exposures.

With the TPM, you can:

Safeguard sensitive user data: The TPM is an easy-to-install security chip that enables secure storage of information, such as passwords and security keys. By automatically sealingdevice encryption keys to the TPM, the printer or multifunction product (MFP) strengthens protection of encrypted credentials and data that it stores. 3 The TPM “wraps” encryption keys with its own storage root key, which is stored within the TPM.

Provide secure device identity: Certificate private keys are both generated by and protected by the TPM, so you can be assured that even your most sensitive client information, data, and documents are safeguarded. The printer or MFP uses the created certificates to prove it is the device it claims to be. Because the certificate private keys never leave the TPM, the identity certificates cannot be spoofed or copied, helping ensure that information received from the device is genuine and that information sent to the device is going to the intended destination.

Derived from HP Document 4AA5-4782ENW, April 2015 Rev.1

HP LaserJet:M602, M603, M604, M605, M606, M712, M806
HP LaserJet MFP: M630, M830
HP Color LaserJet: M552, M553, M651, M855
HP Color LaserJet MFP:M680, M880
HP OfficeJet:X555
HP OfficeJet MFP: X585

The TPM in it's current incarnation in June 2015 is an Infineon SLB9645 chip on a circuit board less than an inch square that plugs into the formatter.

HP Partsurfer shows about F5S62A:

F5S62-61001   TPM Service Kit

Icecat provides basic information on this part including the EAN/UPC code 0888793502341.

The F5S62A is also known as engineering part F5S62-61001. HP Partsurfer lists the M553 M605, M606, and M630 MFP as compatible - presumably it has not been updated to include other models.

Web Research

A google Query on F5S62A in June 2015 gave About 4.050 results (0.25 seconds) suggesting the product has a low level of awareness. First in organic search being as follows:

www8.hp.com/uk/en HP Brochure page SRP £ 70 ExVAT, h20195.www2.hp.com (service unavailable), www.youtube.com video by HP, icecat.biz/us IceCat listing only, phpswiki.com/php_mail_module video by HP, morecomputers.com £61.92 ex. VAT, tube.sxl.net video by HP again, xpcpro.com €80.57, optishop-online.com € 83.5, pcconnection.com $105.18, bestbuybusiness.com $97.99, execute.be 79.24, lambda-tek.com £60.73, zones.com $143.99,shopblt.com $100.03,compsource.com MSRP: $120.75 Sale Price: $115.00, jacob-computer.de €101.30 (€85 ex tax, redcorp.com €78.61 ExVAT, priceme.co.nz (comparrison site),

What was found is listed in Google search rank order for the product code. There were no adwords. After the first few entries what was found seemed to be list driven catalogue sites competing on price and presentation alone.

Dimensions

21.62 x 18.03 x 6.2 mm

0.85 x 0.71 x 0.24 in

Weight

1.7g

0.06 oz

What's In The Box

Just the HP Trusted Platform Module, and an Installation Guide

Guarantee

One-year, onsite limited warranty

Security

Designed to the TPM 1.2 standard set by the Trusted Computing Group. The TCG is an industry standards group formed by AMD, Hewlett-Packard, IBM, Intel and Microsoft, now including Wave Systems Corp, Digital Management Inc, Cisco, Lenovo, Infineon, Juniper Networks and Fujitsu. The group develops specifications amongst its members.

Installation

Fitting is a matter of opening the formatter enclosure on the printer, plugging the board in and securing it with the plastic rivet. the module does require operating system support, so on some printer models the firmware may need to be updated.

In operation the TPM exchanges information with the operating system validating that it is present and that some aspects of the OS and hardware platform remain unchanged.

HP say To prevent possible damage to the TPM module or to the system board, the TPM cannot be removed from the board once it has been installed. The TPM can be disabled, but that will mean the loss of any data stored in the printer and might require a re-installation of the printer operating system. Search for Installing the HP Trusted Platform Module Accessory F5S62A and Uninstalling the HP Trusted Platform Module Accessory F5S62A.

F5S62A

Supply Situation

The modules are comming into use, there are small stocks in UK distribution. For the quantities needed for a corporate roll-out there might be a few days delay.

Usually available for next day delivery - our catalogue pages will reflect the situation.