Module Name
Blue Coat Secure Web Gateway Virtual Appliance
Validation Dates
12/11/2017;12/20/2017;11/13/2019;02/16/2021
Caveat
When operated in FIPS mode
Security Level Exceptions
- Roles, Services, and Authentication: Level 2
- Physical Security: N/A
- Design Assurance: Level 3
- Mitigation of Other Attacks: N/A
Embodiment
Multi-Chip Stand Alone
Description
The Blue Coat ProxySG physical and virtual appliances are the core of Symantec’s Unified Security and Optimization solutions for business assurance. The appliances offer complete security and control of web traffic, providing rich policy constructs for threat protection, SSL traffic, authentication, filtering, data loss prevention and logging. SWG VA identifies malicious payloads and then filters, strips, blocks or replaces web content to mitigate risks and prevent data loss. The appliances also optimize web and internal application traffic for data, video, cloud and web applications.
Tested Configuration(s)
- SGOS v6.7.2, SGOS v6.7.4 and SGOS v6.7.5 on VMware ESXi 6.0 running on a Dell PowerEdge R830 Server
FIPS Algorithms
AES |
Cert. #4596 |
CKG |
vendor affirmed |
CVL |
Certs. #1265 and #1267 |
DRBG |
Cert. #1541 |
HMAC |
Certs. #3046 and #3047 |
KAS-SSC |
vendor affirmed |
KTS |
AES Cert. #4596; key establishment methodology provides between 128 and 256 bits of encryption strength |
KTS |
Triple-DES Cert. #2446; key establishment methodology provides 112 bits of encryption strength |
RSA |
Certs. #2506 and #2507 |
SHS |
Certs. #3772 and #3773 |
Triple-DES |
Cert. #2446 |
Allowed Algorithms
MD5; NDRNG; RSA (key wrapping, key establishment methodology provides between 112 and 150 bits of encryption strength)
Software Versions
6.7.2, 6.7.4, 6.7.5