Cryptographic Module Validation Program CMVP

Certificate #3639

Details

Module Name
FortiOS 5.6
Standard
FIPS 140-2
Status
Active
Sunset Date
4/1/2025
Validation Dates
04/02/2020
Overall Level
1
Caveat
When operated in FIPS mode and installed, initialized and configured as specified in the FIPS 140-2 Compliant Operation Section of the Security Policy
Security Level Exceptions
  • Roles, Services, and Authentication: Level 3
  • Design Assurance: Level 3
Module Type
Firmware
Embodiment
Multi-Chip Stand Alone
Description
The FortiOS is a firmware based operating system that runs exclusively on Fortinet's FortiGate/FortiWiFi product family. The FortiOS provides integrated firewall, VPN, antivirus, antispam, intrusion prevention, content filtering and traffic shaping and HA capabilities.
Tested Configuration(s)
  • FortiGate-301E
FIPS Algorithms
AES Certs. #C468, #C530 and #C531
CVL Certs. #C468, #C530 and #C531
DRBG Cert. #C529
ECDSA Certs. #C468, #C530 and #C531
HMAC Certs. #C468, #C530 and #C531
KTS AES Cert. #C530 and HMAC Cert. #C530; key establishment methodology provides 128 or 256 bits of encryption strength
KTS AES Cert. #C530; key establishment methodology provides 128 or 256 bits of encryption strength
RSA Certs. #C530 and #C531
SHS Certs. #C468, #C530 and #C531
Allowed Algorithms
Diffie-Hellman (CVL Certs. #C468 and #C530, key agreement; key establishment methodology provides between 112 and 196 bits of encryption strength); EC Diffie-Hellman (CVL Cert. #C530, key agreement; key establishment methodology provides between 128 and 256 bits of encryption strength); MD5; NDRNG; RSA (key wrapping; key establishment methodology provides 112 or 128 bits of encryption strength)
Firmware Versions
FortiOS 5.6, build6022,190808

Vendor

Fortinet, Inc.
16 Fitzgerald Road
Ottawa, ON K2H 8R6
Canada

Alan Kaye
akaye@fortinet.com
Phone: 613-225-9381 x87416
Fax: 613-225-2951

Lab

Lightship Security, Inc.
NVLAP Code: 600207-0