Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Cryptographic Module Validation Program CMVP

Certificate #4668

Details

Module Name
Prisma SD-WAN Controller's Cryptographic Module
Standard
FIPS 140-2
Status
Active
Sunset Date
9/21/2026
Overall Level
1
Caveat
When operated in FIPS mode. When operated per the Security Policy. No assurance of minimum security of keys and bit strings that are externally loaded, or of keys and CSPs established with externally loaded bit strings
Security Level Exceptions
  • Physical Security: N/A
  • Mitigation of Other Attacks: N/A
Module Type
Software
Embodiment
Multi-Chip Stand Alone
Description
The Palo Alto Networks Controller allows operators the ability to manage ION devices to administer security policy rules and provides various application and network analytics.
Tested Configuration(s)
  • JDK 11.0.10 on Ubuntu 14.04 running on Dell Power Edge R740 with Intel(R) Xeon(R) Platinum 8260 CPU @ 2.40GHz with PAA
  • JDK 11.0.10 on Ubuntu 14.04 running on Dell Power Edge R740 with Intel(R) Xeon(R) Platinum 8260 CPU @ 2.40GHz without PAA (single-user mode)
Approved Algorithms
AES Certs. #A2476 and #A2496
CKG vendor affirmed
CVL Certs. #A2476 and #A2496
DRBG Certs. #A2476 and #A2496
ECDSA Certs. #A2476 and #A2496
HMAC Certs. #A2476 and #A2496
KAS KAS-SSC Certs. #A2476 and #A2496, CVL Certs. #A2476 and #A2496
KAS-SSC Certs. #A2476 and #A2496
KBKDF Cert. #A2496
KTS AES Certs. #A2476 and #A2496 and HMAC Certs. #A2476 and #A2496; key establishment methodology provides 128 or 256 bits of encryption strength
RSA Certs. #A2476 and #A2496
SHS Certs. #A2476 and #A2496
Allowed Algorithms
N/A
Software Versions
1.0

Vendor

Palo Alto Networks, Inc.
3000 Tannery Way
Santa Clara, CA 95054
USA

Nagaraj Bagepalli
certifications@paloaltonetworks.com
Phone: 408-753-4000
Jake Bajic
certifications@paloaltonetworks.com
Phone: 408-753-4000

Validation History

Date Type Lab
12/5/2023 Initial ADVANCED DATA SECURITY LLC