Cryptographic Algorithm Validation Program CAVP

Description
Forcepoint NGFW FIPS Object Module is a software module that provides cryptographic services required by the Forcepoint NGFW product
Version
2.0.14
Type
SOFTWARE
Vendor
Forcepoint
10900-A Stonelake Blvd.
Ste. 350
Austin, TX 78759
USA
Contacts
Klaus Majewski
legal@forcepoint.com
1-858-320-8000
Jorma Levomäki
legal@forcepoint.com
1-858-320-8000

Validations

Number
Date
Operating Environments
Algorithm Capabilities
RSA 2777
1/26/2018
  • Debian 9 based OS with Linux 4.9 on Intel Pentium D
    • Intel Pentium D w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon D
    • Intel Xeon D w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v2
    • Intel Xeon E5 v2 w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v3
    • Intel Xeon E5 v3 w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v4
    • Intel Xeon E5 v4 w/ Debian 9 based OS with Linux 4.9
  • RSA KeyGen (186-2)
    • Modulus Length: 2048, 3072, 4096
    • Public Key Value: 3, 17, 65537
    Prerequisites:
  • RSA KeyGen (186-4)
    • Public Exponent Mode: Fixed
    • Fixed Public Exponent: 10001
    Prerequisites:
  • RSA SigGen (186-2)
      • Capabilities:
        • Signature Type: ANSI X9.31
        • Modulo: 4096
        • Hash Algorithm: SHA2-256, SHA2-384, SHA2-512
      • Capabilities:
        • Signature Type: PKCS 1.5
        • Modulo: 4096
        • Hash Algorithm: SHA2-224, SHA2-256, SHA2-384, SHA2-512
      • Capabilities:
        • Signature Type: PKCSPSS
        • Modulo: 4096
        • Hash Algorithm: SHA2-224, SHA2-256, SHA2-384, SHA2-512
    Prerequisites:
  • RSA SigGen (186-4)
      • Capabilities:
        • Signature Type: ANSI X9.31
          • Properties:
            • Modulo: 2048
              • Hash Pair:
                • Hash Algorithm: SHA-1
              • Hash Pair:
                • Hash Algorithm: SHA2-256
              • Hash Pair:
                • Hash Algorithm: SHA2-384
              • Hash Pair:
                • Hash Algorithm: SHA2-512
          • Properties:
            • Modulo: 3072
              • Hash Pair:
                • Hash Algorithm: SHA-1
              • Hash Pair:
                • Hash Algorithm: SHA2-256
              • Hash Pair:
                • Hash Algorithm: SHA2-384
              • Hash Pair:
                • Hash Algorithm: SHA2-512
      • Capabilities:
        • Signature Type: PKCS 1.5
          • Properties:
            • Modulo: 2048
              • Hash Pair:
                • Hash Algorithm: SHA-1
              • Hash Pair:
                • Hash Algorithm: SHA2-224
              • Hash Pair:
                • Hash Algorithm: SHA2-256
              • Hash Pair:
                • Hash Algorithm: SHA2-384
              • Hash Pair:
                • Hash Algorithm: SHA2-512
          • Properties:
            • Modulo: 3072
              • Hash Pair:
                • Hash Algorithm: SHA-1
              • Hash Pair:
                • Hash Algorithm: SHA2-224
              • Hash Pair:
                • Hash Algorithm: SHA2-256
              • Hash Pair:
                • Hash Algorithm: SHA2-384
              • Hash Pair:
                • Hash Algorithm: SHA2-512
      • Capabilities:
        • Signature Type: PKCSPSS
          • Properties:
            • Modulo: 2048
              • Hash Pair:
                • Hash Algorithm: SHA2-224
              • Hash Pair:
                • Hash Algorithm: SHA2-256
              • Hash Pair:
                • Hash Algorithm: SHA2-384
              • Hash Pair:
                • Hash Algorithm: SHA2-512
          • Properties:
            • Modulo: 3072
              • Hash Pair:
                • Hash Algorithm: SHA2-224
              • Hash Pair:
                • Hash Algorithm: SHA2-256
              • Hash Pair:
                • Hash Algorithm: SHA2-384
              • Hash Pair:
                • Hash Algorithm: SHA2-512
    Prerequisites:
  • RSA SigVer (186-4)
      • Capabilities:
        • Signature Type: ANSI X9.31
          • Properties:
            • Modulo: 1024
              • Hash Pair:
                • Hash Algorithm: SHA-1
              • Hash Pair:
                • Hash Algorithm: SHA2-256
              • Hash Pair:
                • Hash Algorithm: SHA2-384
              • Hash Pair:
                • Hash Algorithm: SHA2-512
          • Properties:
            • Modulo: 2048
              • Hash Pair:
                • Hash Algorithm: SHA-1
              • Hash Pair:
                • Hash Algorithm: SHA2-256
              • Hash Pair:
                • Hash Algorithm: SHA2-384
              • Hash Pair:
                • Hash Algorithm: SHA2-512
          • Properties:
            • Modulo: 3072
              • Hash Pair:
                • Hash Algorithm: SHA-1
              • Hash Pair:
                • Hash Algorithm: SHA2-256
              • Hash Pair:
                • Hash Algorithm: SHA2-384
              • Hash Pair:
                • Hash Algorithm: SHA2-512
      • Capabilities:
        • Signature Type: PKCS 1.5
          • Properties:
            • Modulo: 1024
              • Hash Pair:
                • Hash Algorithm: SHA-1
              • Hash Pair:
                • Hash Algorithm: SHA2-224
              • Hash Pair:
                • Hash Algorithm: SHA2-256
              • Hash Pair:
                • Hash Algorithm: SHA2-384
              • Hash Pair:
                • Hash Algorithm: SHA2-512
          • Properties:
            • Modulo: 2048
              • Hash Pair:
                • Hash Algorithm: SHA-1
              • Hash Pair:
                • Hash Algorithm: SHA2-224
              • Hash Pair:
                • Hash Algorithm: SHA2-256
              • Hash Pair:
                • Hash Algorithm: SHA2-384
              • Hash Pair:
                • Hash Algorithm: SHA2-512
          • Properties:
            • Modulo: 3072
              • Hash Pair:
                • Hash Algorithm: SHA-1
              • Hash Pair:
                • Hash Algorithm: SHA2-224
              • Hash Pair:
                • Hash Algorithm: SHA2-256
              • Hash Pair:
                • Hash Algorithm: SHA2-384
              • Hash Pair:
                • Hash Algorithm: SHA2-512
      • Capabilities:
        • Signature Type: PKCSPSS
          • Properties:
            • Modulo: 1024
              • Hash Pair:
                • Hash Algorithm: SHA-1
                • Salt Length: 0
              • Hash Pair:
                • Hash Algorithm: SHA2-224
                • Salt Length: 0
              • Hash Pair:
                • Hash Algorithm: SHA2-256
                • Salt Length: 0
              • Hash Pair:
                • Hash Algorithm: SHA2-384
                • Salt Length: 0
              • Hash Pair:
                • Hash Algorithm: SHA2-512
                • Salt Length: 0
          • Properties:
            • Modulo: 2048
              • Hash Pair:
                • Hash Algorithm: SHA-1
                • Salt Length: 0
              • Hash Pair:
                • Hash Algorithm: SHA2-224
                • Salt Length: 0
              • Hash Pair:
                • Hash Algorithm: SHA2-256
                • Salt Length: 0
              • Hash Pair:
                • Hash Algorithm: SHA2-384
                • Salt Length: 0
              • Hash Pair:
                • Hash Algorithm: SHA2-512
                • Salt Length: 0
          • Properties:
            • Modulo: 3072
              • Hash Pair:
                • Hash Algorithm: SHA-1
                • Salt Length: 0
              • Hash Pair:
                • Hash Algorithm: SHA2-224
                • Salt Length: 0
              • Hash Pair:
                • Hash Algorithm: SHA2-256
                • Salt Length: 0
              • Hash Pair:
                • Hash Algorithm: SHA2-384
                • Salt Length: 0
              • Hash Pair:
                • Hash Algorithm: SHA2-512
                • Salt Length: 0
    Prerequisites:
ECDSA 1339
1/26/2018
  • Debian 9 based OS with Linux 4.9 on Intel Pentium D
    • Intel Pentium D w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon D
    • Intel Xeon D w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v2
    • Intel Xeon E5 v2 w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v3
    • Intel Xeon E5 v3 w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v4
    • Intel Xeon E5 v4 w/ Debian 9 based OS with Linux 4.9
DRBG 1946
1/26/2018
  • Debian 9 based OS with Linux 4.9 on Intel Pentium D
    • Intel Pentium D w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon D
    • Intel Xeon D w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v2
    • Intel Xeon E5 v2 w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v3
    • Intel Xeon E5 v3 w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v4
    • Intel Xeon E5 v4 w/ Debian 9 based OS with Linux 4.9
  • Counter DRBG
    • Prediction Resistance: Yes, No
      • Capabilities:
        • Mode: AES-128
        • Derivation Function Enabled: No
      • Capabilities:
        • Mode: AES-128
        • Derivation Function Enabled: Yes
      • Capabilities:
        • Mode: AES-192
        • Derivation Function Enabled: No
      • Capabilities:
        • Mode: AES-192
        • Derivation Function Enabled: Yes
      • Capabilities:
        • Mode: AES-256
        • Derivation Function Enabled: No
      • Capabilities:
        • Mode: AES-256
        • Derivation Function Enabled: Yes
    Prerequisites:
AES 5168
1/26/2018
  • Debian 9 based OS with Linux 4.9 on Intel Pentium D
    • Intel Pentium D w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon D
    • Intel Xeon D w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v2
    • Intel Xeon E5 v2 w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v3
    • Intel Xeon E5 v3 w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v4
    • Intel Xeon E5 v4 w/ Debian 9 based OS with Linux 4.9
  • AES-CBC
    • Direction: Decrypt, Encrypt
    • Key Length: 128, 192, 256
  • AES-CCM
    • Key Length: 128, 192, 256
    • Tag Length: 32, 48, 64, 80, 96, 112, 128
    • IV Length: 56, 64, 72, 80, 88, 96, 104
    • Payload Length: 0
    • AAD Length: 0-524288
  • AES-CFB1
    • Direction: Decrypt, Encrypt
    • Key Length: 128, 192, 256
  • AES-CFB128
    • Direction: Decrypt, Encrypt
    • Key Length: 128, 192, 256
  • AES-CFB8
    • Direction: Decrypt, Encrypt
    • Key Length: 128, 192, 256
  • AES-CMAC
      • Capabilities:
        • Direction: Generation, Verification
        • Key Length: 128, 192, 256
        • MAC: 0-128
        • Message Length: 0-524288
        • Block Size: Full, Partial
  • AES-CTR
    • Key Length: 128, 192, 256
    • Counter Source: External
  • AES-ECB
    • Direction: Decrypt, Encrypt
    • Key Length: 128, 192, 256
  • AES-GCM
    • Direction: Decrypt, Encrypt
    • IV Generation: Internal
    • IV Generation Mode: 8.2.1
    • Key Length: 128, 192, 256
    • Tag Length: 32, 64, 96, 104, 112, 120, 128
    • IV Length: 96
    • Payload Length: 504, 512, 1016, 1024
    • AAD Length: 0, 504, 512, 1016, 1024
  • AES-OFB
    • Direction: Decrypt, Encrypt
    • Key Length: 128, 192, 256
HMAC 3429
1/26/2018
  • Debian 9 based OS with Linux 4.9 on Intel Pentium D
    • Intel Pentium D w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon D
    • Intel Xeon D w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v2
    • Intel Xeon E5 v2 w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v3
    • Intel Xeon E5 v3 w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v4
    • Intel Xeon E5 v4 w/ Debian 9 based OS with Linux 4.9
DSA 1340
1/26/2018
  • Debian 9 based OS with Linux 4.9 on Intel Pentium D
    • Intel Pentium D w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon D
    • Intel Xeon D w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v2
    • Intel Xeon E5 v2 w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v3
    • Intel Xeon E5 v3 w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v4
    • Intel Xeon E5 v4 w/ Debian 9 based OS with Linux 4.9
  • DSA KeyGen (186-4)
      • Capabilities:
        • L: 2048
        • N: 224
      • Capabilities:
        • L: 2048
        • N: 256
      • Capabilities:
        • L: 3072
        • N: 256
    Prerequisites:
  • DSA SigGen (186-4)
      • Capabilities:
        • L: 2048
        • N: 224
        • Hash Algorithm: SHA-1, SHA2-224, SHA2-256, SHA2-384, SHA2-512
      • Capabilities:
        • L: 2048
        • N: 256
        • Hash Algorithm: SHA-1, SHA2-224, SHA2-256, SHA2-384, SHA2-512
      • Capabilities:
        • L: 3072
        • N: 256
        • Hash Algorithm: SHA-1, SHA2-224, SHA2-256, SHA2-384, SHA2-512
    Prerequisites:
  • DSA SigVer (186-4)
      • Capabilities:
        • L: 1024
        • N: 160
        • Hash Algorithm: SHA-1, SHA2-224, SHA2-256, SHA2-384, SHA2-512
      • Capabilities:
        • L: 2048
        • N: 224
        • Hash Algorithm: SHA-1, SHA2-224, SHA2-256, SHA2-384, SHA2-512
      • Capabilities:
        • L: 2048
        • N: 256
        • Hash Algorithm: SHA-1, SHA2-224, SHA2-256, SHA2-384, SHA2-512
      • Capabilities:
        • L: 3072
        • N: 256
        • Hash Algorithm: SHA-1, SHA2-224, SHA2-256, SHA2-384, SHA2-512
    Prerequisites:
TDES 2632
1/26/2018
  • Debian 9 based OS with Linux 4.9 on Intel Pentium D
    • Intel Pentium D w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon D
    • Intel Xeon D w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v2
    • Intel Xeon E5 v2 w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v3
    • Intel Xeon E5 v3 w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v4
    • Intel Xeon E5 v4 w/ Debian 9 based OS with Linux 4.9
  • TDES-CBC
    • Direction: Decrypt, Encrypt
    • Keying Option: 1
  • TDES-CFB1
    • Direction: Decrypt, Encrypt
    • Keying Option: 1
  • TDES-CFB64
    • Direction: Decrypt, Encrypt
    • Keying Option: 1
  • TDES-CFB8
    • Direction: Decrypt, Encrypt
    • Keying Option: 1
  • TDES-ECB
    • Direction: Decrypt, Encrypt
    • Keying Option: 1
  • TDES-OFB
    • Direction: Decrypt, Encrypt
    • Keying Option: 1
Component 1676
1/26/2018
  • Debian 9 based OS with Linux 4.9 on Intel Pentium D
    • Intel Pentium D w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon D
    • Intel Xeon D w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v2
    • Intel Xeon E5 v2 w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v3
    • Intel Xeon E5 v3 w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v4
    • Intel Xeon E5 v4 w/ Debian 9 based OS with Linux 4.9
SHS 4175
1/26/2018
  • Debian 9 based OS with Linux 4.9 on Intel Pentium D
    • Intel Pentium D w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon D
    • Intel Xeon D w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v2
    • Intel Xeon E5 v2 w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v3
    • Intel Xeon E5 v3 w/ Debian 9 based OS with Linux 4.9
  • Debian 9 based OS with Linux 4.9 on Intel Xeon E5 v4
    • Intel Xeon E5 v4 w/ Debian 9 based OS with Linux 4.9
  • SHA-1
    • Message Length: 0-51200 Increment 8
  • SHA-224
    • Message Length: 0-51200 Increment 8
  • SHA-256
    • Message Length: 0-51200 Increment 8
  • SHA-384
    • Message Length: 0-102400 Increment 8
  • SHA-512
    • Message Length: 0-102400 Increment 8
Created October 05, 2016, Updated June 22, 2020