Cryptographic Module Validation Program CMVP

Certificate #3144

Details

Module Name
Palo Alto Networks VM-Series
Standard
FIPS 140-2
Status
Active
Sunset Date
3/4/2023
Validation Dates
03/05/2018;06/18/2018;07/06/2018;10/31/2018;02/21/2020
Overall Level
1
Caveat
When operated in FIPS mode. The module generates cryptographic keys whose strengths are modified by available entropy
Security Level Exceptions
  • Roles, Services, and Authentication: Level 3
  • Physical Security: N/A
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A
Module Type
Software
Embodiment
Multi-Chip Stand Alone
Description
The VM-Series allows you to protect your applications and data from cyber threats with our next-generation firewall security and advanced threat prevention features.
Tested Configuration(s)
  • KVM on CentOS 7.2 running on a Dell Power Edge R730
  • Microsoft Hyper-V 2012R2 running on a Dell PowerEdge R730
  • VMware ESXi v5.5 running on a Dell PowerEdge R730
  • VMware ESXi v5.5 running on a PacStar 451 (single user mode)
FIPS Algorithms
AES Cert. #4526
CKG vendor affirmed
CVL Certs. #1203, #1204 and #1205
DRBG Cert. #1486
DSA Cert. #1205
ECDSA Cert. #1101
HMAC Cert. #2986
KAS SP 800-56Arev2 with CVL Certs. #1203 and #1204, vendor affirmed; key establishment methodology provides between 112 and 256 bits of encryption strength
KTS AES Cert. #4526; key establishment methodology provides between 128 and 256 bits of encryption strength
KTS AES Cert. #4526 and HMAC Cert. #2986; key establishment methodology provides between 128 and 256 bits of encryption strength
RSA Cert. #2463
SHS Cert. #3707
Allowed Algorithms
Diffie-Hellman (CVL Certs. #1203 and #1204, key agreement; key establishment methodology provides 112 bits of encryption strength); MD5; NDRNG; RSA (key wrapping; key establishment methodology provides 112 or 128 bits of encryption strength)
Software Versions
8.0.3, 8.0.6, 8.0.9, 8.0.12 or 8.0.13

Vendor

Palo Alto Networks
3000 Tannery Way
Santa Clara, CA 95054
USA

Jake Bajic
certifications@paloaltonetworks.com
Phone: 408-753-4000

Lab

UL VERIFICATION SERVICES INC
NVLAP Code: 100432-0