McAfee Firewall Enterprise Control Center Virtual Appliance

Certificate #2416

Webpage information

Status historical
Historical reason Moved to historical list due to sunsetting
Validation dates 30.07.2015
Standard FIPS 140-2
Security level 1
Type Software
Embodiment Multi-Chip Stand Alone
Caveat When installed, initialized and configured as specified in the Security Policy in Section Secure Operation. The module generates cryptographic keys whose strengths are modified by available entropy
Exceptions
  • Roles, Services, and Authentication: Level 2
  • Physical Security: N/A
  • Mitigation of Other Attacks: N/A
Description McAfee Firewall Enterprise Control Center simplifies the management of multiple McAfee Firewall Enterprise appliances. Control Center enables centralized management and monitoring of the McAfee Firewall Enterprise solutions, allowing network administrators to centrally define firewall policy, deploy updates and inventory their firewall products.
Tested configurations
  • MLOS v2.2.3 on VMware vSphere 5.0 running on a Intel SR2625URLX (single-user mode)
Vendor McAfee, Inc.
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, AES-256, AES-128, AES-192, DES, Triple-DES, HMAC
Asymmetric Algorithms
RSA-2048, Diffie-Hellman, DSA
Hash functions
SHA-1, SHA-384, SHA-512, SHA-256, MD5
Protocols
SSH, SSL, TLS, TLS 1.2
Randomness
DRBG, RNG
Libraries
OpenSSL
Block cipher modes
ECB, CBC, CFB, OFB, GCM, CCM

Security level
Level 1, Level 9

Standards
FIPS 140-2, FIPS 186-4, FIPS 186-2, FIPS 140, SP 800-38D, SP 800-90A, PKCS25, PKCS #1

File metadata

Title Security Policy
Subject Firewall Enterprise Control Center Virtual Appliance
Author Jerrod Schultz
Creation date D:20150316155032-04'00'
Modification date D:20150316155032-04'00'
Pages 26
Creator Microsoft® Office Word 2007
Producer Microsoft® Office Word 2007

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 2416,
  "dgst": "0edcd7f37d75330b",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "SHS#2499",
        "HMAC#1885",
        "DRBG#628",
        "Triple-DES#1762",
        "HMAC#1954",
        "DSA#901",
        "SHS#2573",
        "RSA#1562",
        "RSA#1588",
        "DSA#886",
        "AES#2973",
        "CVL#379",
        "AES#3117",
        "Triple-DES#1788"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "-"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "FF": {
          "DH": {
            "Diffie-Hellman": 2
          },
          "DSA": {
            "DSA": 13
          }
        },
        "RSA": {
          "RSA-2048": 10
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 5
        },
        "CCM": {
          "CCM": 2
        },
        "CFB": {
          "CFB": 7
        },
        "ECB": {
          "ECB": 5
        },
        "GCM": {
          "GCM": 4
        },
        "OFB": {
          "OFB": 3
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {
        "OpenSSL": {
          "OpenSSL": 18
        }
      },
      "crypto_protocol": {
        "SSH": {
          "SSH": 20
        },
        "TLS": {
          "SSL": {
            "SSL": 1
          },
          "TLS": {
            "TLS": 17,
            "TLS 1.2": 1
          }
        }
      },
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#1": 4
        }
      },
      "fips_certlike": {
        "Certlike": {
          "AES Encrypt KAT35": 1,
          "AES-128": 3,
          "AES-192": 1,
          "AES-256": 3,
          "AES17": 1,
          "DRBG 567": 1,
          "DRBG 628": 1,
          "DRBG KAT 2": 1,
          "DSA- 2048": 2,
          "Diffie-Hellman 2048": 1,
          "HMAC SHA-256": 6,
          "HMAC SHA-384": 4,
          "HMAC SHA-512": 2,
          "HMAC SHA-512 1885": 1,
          "HMAC SHA-512 1954": 1,
          "HMAC27": 2,
          "PKCS #1": 6,
          "PKCS25": 2,
          "SHA 256": 1,
          "SHA 384": 1,
          "SHA-1": 1,
          "SHA-256": 11,
          "SHA-384": 8,
          "SHA-512": 4,
          "SHA-512 1885": 1,
          "SHA-512 1954": 1,
          "SHA-512 2499": 1,
          "SHA-512 2573": 1,
          "SHA26": 1
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 6,
          "Level 9": 1
        }
      },
      "hash_function": {
        "MD": {
          "MD5": {
            "MD5": 3
          }
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 1
          },
          "SHA2": {
            "SHA-256": 11,
            "SHA-384": 8,
            "SHA-512": 8
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 21
        },
        "RNG": {
          "RNG": 4
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140": 1,
          "FIPS 140-2": 25,
          "FIPS 186-2": 1,
          "FIPS 186-4": 3
        },
        "NIST": {
          "SP 800-38D": 1,
          "SP 800-90A": 1
        },
        "PKCS": {
          "PKCS #1": 3,
          "PKCS25": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 11,
            "AES-128": 3,
            "AES-192": 1,
            "AES-256": 3
          }
        },
        "DES": {
          "3DES": {
            "Triple-DES": 9
          },
          "DES": {
            "DES": 2
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 24
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "Jerrod Schultz",
      "/CreationDate": "D:20150316155032-04\u002700\u0027",
      "/Creator": "Microsoft\u00ae Office Word 2007",
      "/ModDate": "D:20150316155032-04\u002700\u0027",
      "/Producer": "Microsoft\u00ae Office Word 2007",
      "/Subject": "Firewall Enterprise Control Center Virtual Appliance",
      "/Title": "Security Policy",
      "pdf_file_size_bytes": 852919,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "mailto:[email protected]",
          "http://csrc.nist.gov/groups/STM/cmvp/documents/140-1/140val-all.htm",
          "http://www.corsec.com/",
          "http://csrc.nist.gov/groups/STM/cmvp",
          "http://www.mcafee.com/us/downloads/downloads.aspx",
          "http://www.mcafee.com/",
          "mailto:[email protected]"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 26
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "363208833ba268cf27fc2dffa810ca380f2c897b55c86e0bec291cb2e65fef02",
    "policy_txt_hash": "06fb568ef112c517b450e87f93c27b9c0645091ce23864fa09ae196f81ababe5"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When installed, initialized and configured as specified in the Security Policy in Section Secure Operation. The module generates cryptographic keys whose strengths are modified by available entropy",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/FIPS140ConsolidatedCertList0055.pdf",
    "date_sunset": null,
    "description": "McAfee Firewall Enterprise Control Center simplifies the management of multiple McAfee Firewall Enterprise appliances. Control Center enables centralized management and monitoring of the McAfee Firewall Enterprise solutions, allowing network administrators to centrally define firewall policy, deploy updates and inventory their firewall products.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Roles, Services, and Authentication: Level 2",
      "Physical Security: N/A",
      "Mitigation of Other Attacks: N/A"
    ],
    "fw_versions": null,
    "historical_reason": "Moved to historical list due to sunsetting",
    "hw_versions": null,
    "level": 1,
    "mentioned_certs": {},
    "module_name": "McAfee Firewall Enterprise Control Center Virtual Appliance",
    "module_type": "Software",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": "5.3.2 Patch 6",
    "tested_conf": [
      "MLOS v2.2.3 on VMware vSphere 5.0 running on a Intel SR2625URLX (single-user mode)"
    ],
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2015-07-30",
        "lab": "EWA - Canada",
        "validation_type": "Initial"
      }
    ],
    "vendor": "McAfee, Inc.",
    "vendor_url": "http://www.mcafee.com"
  }
}