Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Cryptographic Module Validation Program CMVP

Certificate #3821

Details

Module Name
Cisco Firepower Threat Defense on 4K/9K Cryptographic Module
Standard
FIPS 140-2
Status
Historical
 Historical Reason
SP 800-56Arev3 transition
Overall Level
1
Caveat
When operated in FIPS mode. When installed, initialized and configured as specified in Section 3 of the Security Policy
Security Level Exceptions
  • Roles, Services, and Authentication: Level 3
  • Design Assurance: Level 2
  • Mitigation of Other Attacks: N/A
Module Type
Hardware
Embodiment
Multi-Chip Embedded
Description
Cisco Firepower Threat Defense (FTD) is a unified software image, which includes the Cisco ASA features and FirePOWER Services. This unified software is capable of offering the function of ASA and FirePOWER in one platform. This consolidates next-generation firewall, including stateful firewalling, routing, Next-Generation Intrusion Prevention System (NGIPS), Application Visibility and Control (AVC), URL filtering, and Advanced Malware Protection (AMP).
Tested Configuration(s)
  • N/A
Approved Algorithms
AES Certs. #2034, #2035, #4905, #C784 and #C1026
CVL Certs. #1521 and #C784
DRBG Certs. #197, #1735, #C784 and #C1026
ECDSA Certs. #1254 and #C784
HMAC Certs. #1233, #3272, #C784 and #C1026
RSA Certs. #2678 and #C784
SHS Certs. #1780, #4012, #C784 and #C1026
Triple-DES Certs. #1311, #2559, #C784 and #C1026
Allowed Algorithms
Diffie-Hellman (CVL Certs. #1521 and #C784, key agreement; key establishment methodology provides between 112 and 150 bits of encryption strength); EC Diffie-Hellman (CVL Certs. #1521 and #C784, key agreement; key establishment methodology provides between 128 and 256 bits of encryption strength); NDRNG; RSA (key wrapping; key establishment methodology provides 112 bits of encryption strength)
Hardware Versions
FPR4110, FPR4115, FPR4120, FPR4125, FPR4140, FPR4145, FPR4150, FPR9K-SM-24, FPR9K-SM-36, FPR9K-SM-40, FPR9K-SM-44, FPR9K-SM-48 and FPR9K-SM-56
Firmware Versions
6.4

Vendor

Cisco Systems, Inc.
170 W Tasman Drive
San Jose, CA 95134
USA

Global Certification Team
certteam@cisco.com

Validation History

Date Type Lab
2/23/2021 Initial GOSSAMER SECURITY SOLUTIONS INC