Module Name
WatchGuard Firebox M200[1], M300[2], M400[3], M500[4], M440[5], M4600[6], M5600[7]
Validation Dates
03/16/2017
Caveat
When operated in FIPS mode and with the tamper-evident seals installed as indicated in the Security Policy
Embodiment
Multi-Chip Stand Alone
Description
WatchGuard® Firebox appliances are built for enterprise-grade performance with blazing throughput and numerous connectivity options. Advanced networking features include clustering, high availability (active/active), VLAN support, multi-WAN load balancing and enhanced VoIP security, plus inbound and outbound HTTPS inspection, to give the strong security enterprises need. And the FIREBOX appliances are completely configurable - turn on or off components and services to fit different network security deployment requirements.
FIPS Algorithms
AES |
Certs. #3670, #3671, #3672, #3676, #3677, and #3960 |
CVL |
Cert. #793 |
DRBG |
Cert. #1160 |
HMAC |
Certs. #2417, #2418, #2419, #2423, #2424, and #2580 |
RSA |
Cert. #2023 |
SHS |
Certs. #3085, #3086, #3087, #3091, #3092, and #3266 |
Triple-DES |
Certs. #2049, #2050, #2051, #2055, #2056, and #2171 |
Other Algorithms
Diffie-Hellman (key agreement; key establishment methodology provides 112 or 128 bits of encryption strength; non-compliant less than 112 bits of encryption strength); EC Diffie-Hellman (key agreement; key establishment methodology provides 128 or 192 bits of encryption strength); NDRNG; RSA (key wrapping; key establishment methodology provides 112 bits of encryption strength); AES (non-compliant); DES; MD5; PBKDF (non-compliant); TKIP
Hardware Versions
ML3AE8 [1,2]; SL1AE24 [5]; KL5AE8 [3,4]; CL4AE24 [6] with WG8583, WG8584 and WG8597; CL5AE32 [7] with WG8583, WG8584, WG8585, WG8022, and WG8598; FIPS Kit P/N: WG8566
Firmware Versions
Fireware OS v11.11.2