Quantum Security Gateway Cryptographic Library

Certificate #4264

Webpage information

Status active
Validation dates 15.07.2022 , 26.08.2022 , 30.05.2023 , 25.09.2023 , 29.07.2025 , 27.08.2025
Sunset date 21-09-2026
Standard FIPS 140-2
Security level 1
Type Firmware
Embodiment Multi-Chip Stand Alone
Caveat When operated in FIPS mode and installed, initialized and configured as specified in the Security Policy Section 3 Secure Operation
Exceptions
  • Mitigation of Other Attacks: N/A
Description The Check Point Cryptographic Library is a firmware module that provides cryptographic services to Check Point products. The module provides a number of NIST validated cryptographic algorithms for services such as IPSec and TLS. The module provides applications with a library interface that enables them to access the various cryptographic algorithm functions supplied by the module.
Version (Firmware) 1.1
Tested configurations
  • Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1530 with a Marvell ARMADA 7040 (ARM Cortex-A72)
  • Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1535 with a Marvell ARMADA 7040 (ARM Cortex-A72)
  • Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1550 with a Marvell ARMADA 7040 (ARM Cortex-A72)
  • Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1555 with a Marvell ARMADA 7040 (ARM Cortex-A72)
  • Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1570 with a Marvell ARMADA 8040 (ARM Cortex-A72)
  • Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1570R with a Marvell ARMADA 7040 (ARM Cortex-A72)
  • Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1575 with a Marvell ARMADA 8040 (ARM Cortex-A72)
  • Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1575R with a Marvell ARMADA 7040 (ARM Cortex-A72)
  • Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1590 with a Marvell ARMADA 8040 (ARM Cortex-A72)
  • Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1595 with a Marvell ARMADA 8040 (ARM Cortex-A72)
  • Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1600 with a Marvell OCTEON TX2 CN9250 (Marvel TX2)
  • Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1800 with a Marvell OCTEON TX2 CN9250 (Marvel TX2)
  • Check Point GAiA Operating System version R81.20 with Check Point 9100 with a 13th Generation Intel Core i3-13100E (Raptor Lake)
  • Check Point GAiA Operating System version R81.20 with Check Point 9300 with a 13th Generation Intel Core i5-13400E (Raptor Cove)
  • Check Point GAiA Operating System version R81.20 with Check Point 9400 with a 13th Generation Intel Core i5-13500E (Raptor Cove)
  • Check Point GAiA Operating System version R82 with Check Point 9100 with a 13th Generation Intel Core i3-13100E (Raptor Lake)
  • Check Point GAiA Operating System version R82 with Check Point 9300 with a 13th Generation Intel Core i5-13400E (Raptor Cove)
  • Check Point GAiA Operating System version R82 with Check Point 9400 with a 13th Generation Intel Core i5-13500E (Raptor Cove)
  • Check Point GAiA OS version R80.30 on VMware ESXi 6.0.0 running on a HPE DL360 gen 10 with a 2nd Generation Intel Xeon Silver
  • Check Point GAiA OS version R80.30 with Check Point 16200 Plus with a 2nd Generation Intel Xeon Silver
  • Check Point GAiA OS version R80.30SP with Check Point 28000 with a 2nd Generation Intel Xeon Gold
  • Check Point GAiA OS version R81.10 with Check Point 3600 with an Intel Atom C Series
  • Check Point GAiA OS version R81.10 with Check Point 7000 with a 2nd Generation Intel Xeon Silver (single-user mode)
Vendor Check Point Software Technologies Ltd.
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, DES, Triple-DES, HMAC, HMAC-SHA-256, HMAC-SHA-384, HMAC-SHA-512, CMAC
Asymmetric Algorithms
ECDSA, Diffie-Hellman
Hash functions
SHA-1, SHA-256, SHA-384, SHA-512
Schemes
Key Exchange, Key exchange, Key Agreement
Protocols
TLS, TLSv1.2, IKE, IKEv2, IKEv1, IPsec
Randomness
DRBG, RNG, RBG
Elliptic Curves
P-256, P-384, P-521
Block cipher modes
CBC, GCM

Security level
Level 1

Standards
FIPS 140-2, SP 800-52, SP 800-56A, SP 800-135, SP 800-90A, RFC 5288, RFC 6071, RFC 4106, RFC 7296, RFC 5282

File metadata

Title Microsoft Word - CMSP Check Point Quantum Security Gateway Cryptographic Library.docx
Author tsengjk
Creation date D:20230922094803-04'00'
Modification date D:20230922094810-04'00'
Pages 29
Creator Nuance PDF Create
Producer Nuance PDF Create

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates

  • 01.09.2025 The certificate data changed.
    Certificate changed

    The web extraction data was updated.

    • The validation_history property was updated, with the [[5, {'_type': 'sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry', 'date': '2025-08-27', 'validation_type': 'Update', 'lab': 'GOSSAMER SECURITY SOLUTIONS INC'}]] values inserted.

    The PDF extraction data was updated.

    • The policy_metadata property was updated, with the {'pdf_file_size_bytes': 551194, 'pdf_number_of_pages': 29, '/CreationDate': "D:20230922094803-04'00'", '/ModDate': "D:20230922094810-04'00'", 'pdf_hyperlinks': {'_type': 'Set', 'elements': []}} data.

    The state was updated.

    • The policy_pdf_hash property was set to ed89fd97d1f7ef8ad76d2368dc0b743d52a6c66a96d0be0d566f8fea247e90d2.
    • The policy_txt_hash property was set to 3afb6e46aca70745ced0499c136b889e84070b30cf6f09c33cf442870a6cab21.
  • 04.08.2025 The certificate data changed.
    Certificate changed

    The web extraction data was updated.

    • The validation_history property was updated, with the [[4, {'_type': 'sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry', 'date': '2025-07-29', 'validation_type': 'Update', 'lab': 'LEIDOS CSTL'}]] values inserted.
    • The tested_conf property was updated, with the [[0, 'Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1530 with a Marvell ARMADA 7040 (ARM Cortex-A72)'], [1, 'Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1535 with a Marvell ARMADA 7040 (ARM Cortex-A72)'], [2, 'Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1550 with a Marvell ARMADA 7040 (ARM Cortex-A72)'], [3, 'Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1555 with a Marvell ARMADA 7040 (ARM Cortex-A72)'], [4, 'Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1570 with a Marvell ARMADA 8040 (ARM Cortex-A72)'], [5, 'Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1570R with a Marvell ARMADA 7040 (ARM Cortex-A72)'], [6, 'Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1575 with a Marvell ARMADA 8040 (ARM Cortex-A72)'], [7, 'Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1575R with a Marvell ARMADA 7040 (ARM Cortex-A72)'], [8, 'Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1590 with a Marvell ARMADA 8040 (ARM Cortex-A72)'], [9, 'Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1595 with a Marvell ARMADA 8040 (ARM Cortex-A72)'], [10, 'Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1600 with a Marvell OCTEON TX2 CN9250 (Marvel TX2)'], [11, 'Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1800 with a Marvell OCTEON TX2 CN9250 (Marvel TX2)'], [12, 'Check Point GAiA Operating System version R81.20 with Check Point 9100 with a 13th Generation Intel Core i3-13100E (Raptor Lake)'], [13, 'Check Point GAiA Operating System version R81.20 with Check Point 9300 with a 13th Generation Intel Core i5-13400E (Raptor Cove)'], [14, 'Check Point GAiA Operating System version R81.20 with Check Point 9400 with a 13th Generation Intel Core i5-13500E (Raptor Cove)'], [15, 'Check Point GAiA Operating System version R82 with Check Point 9100 with a 13th Generation Intel Core i3-13100E (Raptor Lake)'], [16, 'Check Point GAiA Operating System version R82 with Check Point 9300 with a 13th Generation Intel Core i5-13400E (Raptor Cove)'], [17, 'Check Point GAiA Operating System version R82 with Check Point 9400 with a 13th Generation Intel Core i5-13500E (Raptor Cove)']] values inserted.

    The PDF extraction data was updated.

    • The policy_metadata property was updated, with the {'pdf_file_size_bytes': 762444, 'pdf_number_of_pages': 32, '/CreationDate': "D:20250715150317-04'00'", '/ModDate': "D:20250715150317-04'00'", 'pdf_hyperlinks': {'_type': 'Set', 'elements': ['https://protect.checkpoint.com/v2/r02/___https:/sc1.checkpoint.com/documents/Jumbo_HFA/R81.10/R81.10/R81.10-List-of-all-Resolved-Issues.htm___.YzJlOmNwYWxsOmM6bzoyODlhYWFkYjE1YzkwNTNiMjY5YjBjMWU0N2UwZDA4ZTo3OmQzZmE6ZWUxOGFkM2RmMzg4ODBlYzY0Y2ZkMGYyYmM4N2VjOGRkYWI4Mjg3YTMxMDI4MDEwN2Q1MzgwY2NkMTAxYjg4MTpwOkY6Tg', 'https://protect.checkpoint.com/v2/r02/___https:/support.checkpoint.com/results/download/109988___.YzJlOmNwYWxsOmM6bzoyODlhYWFkYjE1YzkwNTNiMjY5YjBjMWU0N2UwZDA4ZTo3OmVmZGM6YzFiNzU1NzgyNzQ3M2RhMTZhMjM2MDk2NjAwNGQ3YTdkYWU2ODNkNzMwZDUwODU3MjMyOTM2NGYyYTk3ZjkyZDpwOkY6Tg', 'https://protect.checkpoint.com/v2/r02/___https:/support.checkpoint.com/results/download/103187___.YzJlOmNwYWxsOmM6bzoyODlhYWFkYjE1YzkwNTNiMjY5YjBjMWU0N2UwZDA4ZTo3OjEyODA6YjcxYWQzY2JjYTc2NGRmZDMxYjFhOWVhZWUxMzI1OWQwN2U3ODhiNDNjM2YxOGJiNDljZDM4NTU5MWFmMTgzNzpwOkY6Tg', 'https://protect.checkpoint.com/v2/r02/___https:/support.checkpoint.com/results/sk/sk181080___.YzJlOmNwYWxsOmM6bzoyODlhYWFkYjE1YzkwNTNiMjY5YjBjMWU0N2UwZDA4ZTo3OjI2OWU6YTBjYjgzZGU3OTUxZTgzMDQ4ZTBlYWQxNGE2NjBkOTIzZTI1ZjNiMWM3YzdlYmY2MzI5ZmYyYThmOWUyYzA4ZTpwOkY6Tg', 'https://protect.checkpoint.com/v2/r02/___https:/en.wikipedia.org/wiki/Hardware_virtualization___.YzJlOmNwYWxsOmM6bzoyODlhYWFkYjE1YzkwNTNiMjY5YjBjMWU0N2UwZDA4ZTo3OjNhNjI6NjI5NDg5MDQyNTM0YzI0ODA2ZWFkNTk5Nzk3OTRjNDc3MjNiZTEwYjFkYWQ2MWUzYWMxMTc1NzdkOWQ2Zjk3MTpwOkY6Tg', 'https://protect.checkpoint.com/v2/r02/___https:/en.wikipedia.org/wiki/Hypervisor___.YzJlOmNwYWxsOmM6bzoyODlhYWFkYjE1YzkwNTNiMjY5YjBjMWU0N2UwZDA4ZTo3OjNkOGI6MjZmZjM1MDExZTU1MmEwZmU4YTYyN2NiOWU2NzYzMDhmMzk4ZDkwYmZiYWU2ODhiZTFiNDk3ZDZhY2Y3YTgzMDpwOkY6Tg#Classification', 'https://protect.checkpoint.com/v2/r02/___https:/support.checkpoint.com/results/download/134260___.YzJlOmNwYWxsOmM6bzoyODlhYWFkYjE1YzkwNTNiMjY5YjBjMWU0N2UwZDA4ZTo3OmQ5NTA6ZmRhNWJlOGE2YmM2ODQ5OTMyNTIwMmY0YmI3MjU5Yzg1MjM4MjkyYjA3NmUzYTIwYTE2NTkyY2VmYzBhMDY2MjpwOkY6Tg', 'https://protect.checkpoint.com/v2/r02/___https:/en.wikipedia.org/wiki/VMware,_Inc.___.YzJlOmNwYWxsOmM6bzoyODlhYWFkYjE1YzkwNTNiMjY5YjBjMWU0N2UwZDA4ZTo3OmNjMjk6NWY2MjE2YjI0OWE4NzQzMzRlZWU5YzFmOWZmZWM0NjE0MjFlYjc2ZWU0ZDE2ZTMwNWVlYTdkNWRiNjVhMjc2YTpwOkY6Tg', 'https://en.wikipedia.org/wiki/Server_(computing)', 'https://protect.checkpoint.com/v2/r02/___https:/en.wikipedia.org/wiki/Hypervisor___.YzJlOmNwYWxsOmM6bzoyODlhYWFkYjE1YzkwNTNiMjY5YjBjMWU0N2UwZDA4ZTo3OjNkOGI6MjZmZjM1MDExZTU1MmEwZmU4YTYyN2NiOWU2NzYzMDhmMzk4ZDkwYmZiYWU2ODhiZTFiNDk3ZDZhY2Y3YTgzMDpwOkY6Tg', 'https://protect.checkpoint.com/v2/r02/___http:/www.checkpoint.com/___.YzJlOmNwYWxsOmM6bzoyODlhYWFkYjE1YzkwNTNiMjY5YjBjMWU0N2UwZDA4ZTo3OjEwNTQ6ZmUxYTU2ODZjMGJkZTEyNTBmNDM1Mjc3NTQzZjg2YTJhMDU2MzdmMDU4MjExZTA4NWE0YWE4NGNjNzFkNjliOTpwOkY6Tg', 'https://protect.checkpoint.com/v2/r02/___http:/csrc.nist.gov/groups/STM/cmvp/index.html___.YzJlOmNwYWxsOmM6bzoyODlhYWFkYjE1YzkwNTNiMjY5YjBjMWU0N2UwZDA4ZTo3OmM3ZGY6NTFkYWZkZTk4MmQ2ZTQ1ZjA3NWRmNmVjYjA4YTM0NjJmZjMzNjBiN2ZiOWQwMTRhNTViMDBiODU2ZmU1YmI4NDpwOkY6Tg', 'https://protect.checkpoint.com/v2/r02/___http:/www.rycombe.com___.YzJlOmNwYWxsOmM6bzoyODlhYWFkYjE1YzkwNTNiMjY5YjBjMWU0N2UwZDA4ZTo3OmQ3MjE6MTJhNWU2MzE0YTIzMWQzNGRjN2QzZGJiY2IyMjhhNDc0ZDA1ZTRlMjA0NjUzYjljZGM5MTM2OWM1YjEzOGZlNjpwOkY6Tg', 'https://protect.checkpoint.com/v2/r02/___https:/en.wikipedia.org/wiki/Enterprise_software___.YzJlOmNwYWxsOmM6bzoyODlhYWFkYjE1YzkwNTNiMjY5YjBjMWU0N2UwZDA4ZTo3OmVjMDc6ZGEyY2ZiODc4YjQxZWU2ZGViYTNjYjc4ZWY4NThjYWI5Y2YwM2U5ZTM0NWEzYzFmMzdkYjdhMDBjNTNjYzQzZTpwOkY6Tg', 'https://protect.checkpoint.com/v2/r02/___https:/support.checkpoint.com/results/download/134289___.YzJlOmNwYWxsOmM6bzoyODlhYWFkYjE1YzkwNTNiMjY5YjBjMWU0N2UwZDA4ZTo3OjBmMmI6NzIxNjgwYzE2YjUyOTM3ZmE1MmZkZDNmYmI3MjRjNTVkMDI1MGM0OGM3NWIyMjI0NjkzODZmMTExMjJlYTk2ZTpwOkY6Tg', 'https://protect.checkpoint.com/v2/r02/___https:/support.checkpoint.com/results/download/110313___.YzJlOmNwYWxsOmM6bzoyODlhYWFkYjE1YzkwNTNiMjY5YjBjMWU0N2UwZDA4ZTo3Ojk0OTY6ZDhmMzA3N2U4MDIzZjRkZmEzMjAxMjdjZGFmZDU4NDgyODZmZmVkM2IyMDMwMjNkNjk5ZWE3N2RhNWZjNWMxNjpwOkY6Tg', 'https://protect.checkpoint.com/v2/r02/___https:/support.checkpoint.com/results/download/100370___.YzJlOmNwYWxsOmM6bzoyODlhYWFkYjE1YzkwNTNiMjY5YjBjMWU0N2UwZDA4ZTo3OmM4OTE6MGNiODNmNTY5OWI5NDE2ZjJmOTk5YzljYzI4YTU1ZGQzMmQyNmE4NjYwY2RhNmIxM2JmZjhhZGJlZmZmNTlkZTpwOkY6Tg']}} data.

    The state was updated.

    • The policy_pdf_hash property was set to 48e5ed2e749315671d97ba90e90113bbea167e0442fe055c03d4dfef0d82bfdd.
    • The policy_txt_hash property was set to a55eec85cd0f7c1b3e60e963fbef79fb554c14ca7405556473c10420c44ba49d.
  • 01.11.2023 The certificate data changed.
    Certificate changed

    The web extraction data was updated.

    • The validation_history property was updated, with the [[3, {'_type': 'sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry', 'date': '2023-09-25', 'validation_type': 'Update', 'lab': 'LEIDOS CSTL'}]] values inserted.
    • The tested_conf property was updated, with the [[5, 'Check Point GAiA OS version R81.10.05 with Check Point 1530 with Marvell ARMADA 7K'], [6, 'Check Point GAiA OS version R81.10.05 with Check Point 1535 with Marvell ARMADA 7K'], [7, 'Check Point GAiA OS version R81.10.05 with Check Point 1550 with Marvell ARMADA 7K'], [8, 'Check Point GAiA OS version R81.10.05 with Check Point 1555 with Marvell ARMADA 7K'], [9, 'Check Point GAiA OS version R81.10.05 with Check Point 1570 with Marvell ARMADA 8K'], [10, 'Check Point GAiA OS version R81.10.05 with Check Point 1570R with Marvell ARMADA 7K'], [11, 'Check Point GAiA OS version R81.10.05 with Check Point 1575 with Marvell ARMADA 8K'], [12, 'Check Point GAiA OS version R81.10.05 with Check Point 1575R with Marvell ARMADA 7K'], [13, 'Check Point GAiA OS version R81.10.05 with Check Point 1590 with Marvell ARMADA 8K'], [14, 'Check Point GAiA OS version R81.10.05 with Check Point 1595 with Marvell ARMADA 8K'], [15, 'Check Point GAiA OS version R81.10.05 with Check Point 1600 with Marvell OCTEON TX2'], [16, 'Check Point GAiA OS version R81.10.05 with Check Point 1800 with Marvell OCTEON TX2']] values inserted.

    The PDF extraction data was updated.

    • The keywords property was updated, with the {'fips_cert_id': {'__update__': {'Cert': {'__insert__': {'#685': 1}}}}, 'fips_certlike': {'__update__': {'Certlike': {'__insert__': {'SHA-14': 1}, '__update__': {'HMAC-SHA-1': 4, 'HMAC-SHA-384': 4}, '__delete__': ['HMAC-SHA-384, 1', '#3418 AES']}}}} data.
    • The policy_metadata property was updated, with the {'pdf_file_size_bytes': 551194, 'pdf_number_of_pages': 29, '/Author': 'tsengjk', '/CreationDate': "D:20230922094803-04'00'", '/ModDate': "D:20230922094810-04'00'", '/Producer': 'Nuance PDF Create'} data.

    The computed heuristics were updated.

    • The algorithms property was updated, with the {'_type': 'Set', 'elements': ['KAS#A4283', 'SHS#A4283', 'HMAC#A4283', 'ECDSA#A4283', 'DRBG#A4283', 'CVL#A4283', 'RSA#A4283', 'AES#A4283']} values added.

    The state was updated.

    • The policy_pdf_hash property was set to ed89fd97d1f7ef8ad76d2368dc0b743d52a6c66a96d0be0d566f8fea247e90d2.
    • The policy_txt_hash property was set to 3afb6e46aca70745ced0499c136b889e84070b30cf6f09c33cf442870a6cab21.
  • 26.06.2023 The certificate data changed.
    Certificate changed

    The web extraction data was updated.

    • The validation_history property was updated, with the [[2, {'_type': 'sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry', 'date': '2023-05-30', 'validation_type': 'Update', 'lab': 'LEIDOS CSTL'}]] values inserted.
    • The tested_conf property was updated, with the [[0, 'Check Point GAiA OS version R80.30 on VMware ESXi 6.0.0 running on a HPE DL360 gen 10 with a 2nd Generation Intel Xeon Silver'], [3, 'Check Point GAiA OS version R81.10 with Check Point 3600 with an Intel Atom C Series'], [4, 'Check Point GAiA OS version R81.10 with Check Point 7000 with a 2nd Generation Intel Xeon Silver (single-user mode)']] values inserted.

    The PDF extraction data was updated.

    • The keywords property was updated, with the {'fips_certlike': {'__update__': {'Certlike': {'__update__': {'SHA-1': 12, 'SHA- 1': 1}}}}, 'asymmetric_crypto': {'__update__': {'FF': {'__update__': {'DH': {'__update__': {'Diffie-Hellman': 5}}}}}}, 'hash_function': {'__update__': {'SHA': {'__update__': {'SHA1': {'__update__': {'SHA-1': 12}}}}}}, 'crypto_protocol': {'__update__': {'TLS': {'__update__': {'TLS': {'__update__': {'TLS': 18}}}}}}, 'ecc_curve': {'__update__': {'NIST': {'__update__': {'P-256': 14, 'P-521': 22}}}}, 'standard_id': {'__update__': {'NIST': {'__update__': {'SP 800-56A': 3, 'SP 800-90A': 12}}}}} data.
    • The policy_metadata property was updated, with the {'pdf_file_size_bytes': 1527398, 'pdf_number_of_pages': 27, '/CreationDate': "D:20230518141733-04'00'", '/ModDate': "D:20230518141733-04'00'"} data.

    The state was updated.

    • The policy_pdf_hash property was set to dc8087ccd22ec63d782cbd423e13067b34f2340ba4cb5c4afb04a326639bb44a.
    • The policy_txt_hash property was set to 217ea6b90617a91fbfc5357d89a53f2070f6f10450add4b1d278c657f51ebfc9.
  • 09.02.2023 The certificate data changed.
    Certificate changed

    The cert_id was updated.

    • The new value is 4264.

    The web extraction data was updated.

    • The following values were inserted: {'validation_history': [{'_type': 'sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry', 'date': '2022-07-15', 'validation_type': 'Initial', 'lab': 'LEIDOS CSTL'}, {'_type': 'sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry', 'date': '2022-08-26', 'validation_type': 'Update', 'lab': 'LEIDOS CSTL'}], 'vendor_url': 'http://www.checkpoint.com', 'certificate_pdf_url': 'https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/July 2022_010822_0659_signed.pdf', 'hw_versions': None, 'fw_versions': '1.1'}.
    • The standard property was set to FIPS 140-2.
    • The status property was set to active.
    • The level property was set to 1.
    • The embodiment property was set to Multi-Chip Stand Alone.
    • The following properties were deleted: ['date_validation', 'algorithms', 'vendor_www', 'lab', 'lab_nvlap', 'security_policy_www', 'certificate_www', 'hw_version', 'fw_version', 'product_url'].

    The PDF extraction data was updated.

    • The following values were inserted: {'policy_metadata': {'pdf_file_size_bytes': 1516871, 'pdf_is_encrypted': False, 'pdf_number_of_pages': 25, '/Author': 'huntzh', '/CreationDate': "D:20220819133752-04'00'", '/ModDate': "D:20220819133752-04'00'", '/Producer': 'Microsoft: Print To PDF', '/Title': 'Microsoft Word - CMSP Check Point Quantum Security Gateway Cryptographic Library.docx', 'pdf_hyperlinks': {'_type': 'Set', 'elements': []}}}.
    • The following properties were deleted: ['cert_id', 'algorithms', 'clean_cert_ids', 'st_metadata'].

    The computed heuristics were updated.

    • The following values were inserted: {'policy_prunned_references': {'_type': 'Set', 'elements': []}, 'module_prunned_references': {'_type': 'Set', 'elements': []}, 'policy_processed_references': {'_type': 'sec_certs.sample.certificate.References', 'directly_referenced_by': None, 'indirectly_referenced_by': None, 'directly_referencing': None, 'indirectly_referencing': None}, 'module_processed_references': {'_type': 'sec_certs.sample.certificate.References', 'directly_referenced_by': None, 'indirectly_referenced_by': None, 'directly_referencing': None, 'indirectly_referencing': None}, 'direct_transitive_cves': None, 'indirect_transitive_cves': None}.
    • The algorithms property was set to {'_type': 'Set', 'elements': ['RSA#1750', 'KAS#514', 'SHS#2824', 'CVL#514', 'AES#3418', 'ECDSA#685', 'DRBG#823', 'HMAC#2176']}.
    • The following properties were deleted: ['keywords', 'unmatched_algs', 'clean_cert_ids', 'st_references', 'web_references'].

    The state was updated.

    • The following values were inserted: {'module_download_ok': True, 'policy_download_ok': True, 'policy_convert_garbage': False, 'policy_convert_ok': True, 'module_extract_ok': True, 'policy_extract_ok': True, 'policy_pdf_hash': 'f21c4fa4a50dc432409426587bafdd7ef4ddeae9c40fcba5078bcb28873ab730', 'policy_txt_hash': '1e9ee2f0930b7431f1fe6ca5427f543e12b3c91f4f8ed82b28bc06def321a318'}.
    • The following properties were deleted: ['sp_path', 'html_path', 'tables_done', 'file_status', 'txt_state'].
  • 07.12.2022 The certificate data changed.
    Certificate changed

    The computed heuristics were updated.

    • The clean_cert_ids property was set to {'#1750': 1}.
    • The st_references property was updated, with the {'directly_referencing': {'_type': 'Set', 'elements': ['1750']}, 'indirectly_referencing': {'_type': 'Set', 'elements': ['1750']}} data.
  • 05.11.2022 The certificate data changed.
    Certificate changed

    The web extraction data was updated.

    • The algorithms property was set to {'_type': 'Set', 'elements': []}.

    The PDF extraction data was updated.

    • The clean_cert_ids property was set to {'#1750': 1, '#514': 2}.

    The computed heuristics were updated.

    • The algorithms property was set to {'_type': 'Set', 'elements': []}.
  • 25.10.2022 The certificate data changed.
    Certificate changed

    The PDF extraction data was updated.

    • The keywords property was updated, with the {'fips_cert_id': {'__update__': {'Cert': {'__delete__': ['#685']}}}, 'fips_security_level': {'__update__': {'Level': {'__delete__': ['level 2']}}}, 'fips_certlike': {'__update__': {'Certlike': {'__update__': {'HMAC-SHA-1': 2, 'SHA-256': 9, 'SHA-384': 7, 'SHA-1': 11, 'SHA-512': 8}, '__delete__': ['SHA-14', 'AES-128', 'AES-256', 'DSA #1750', '#2824 SHA', '#2176 HMAC']}}}, 'vendor': {}, 'symmetric_crypto': {'__update__': {'AES_competition': {'__update__': {'AES': {'__delete__': ['AES-128', 'AES-256']}}}, 'DES': {'__update__': {'DES': {'__update__': {'DES': 2}}}}, 'constructions': {'__update__': {'MAC': {'__update__': {'HMAC': 6}}}}}, '__delete__': ['miscellaneous']}, 'asymmetric_crypto': {'__update__': {'ECC': {'__delete__': ['ECC']}, 'FF': {'__delete__': ['DSA']}}}, 'hash_function': {'__update__': {'SHA': {'__update__': {'SHA1': {'__update__': {'SHA-1': 11}}, 'SHA2': {'__update__': {'SHA-256': 9, 'SHA-384': 7, 'SHA-512': 8}, '__delete__': ['SHA-2']}}, '__delete__': ['SHA3']}}, '__delete__': ['JH', 'bcrypt']}, 'crypto_scheme': {'__update__': {'KA': {'__delete__': ['KA']}}, '__delete__': ['MAC']}, 'crypto_protocol': {'__update__': {'TLS': {'__update__': {'TLS': {'__delete__': ['TLS v1.0']}}}, 'IPsec': {'__update__': {'IPsec': 5}}}}, 'randomness': {'__update__': {'PRNG': {'__update__': {'DRBG': 19}}, 'RNG': {'__update__': {'RNG': 2, 'RBG': 1}}}}, 'cipher_mode': {'__update__': {'CBC': {'__update__': {'CBC': 1}}, 'GCM': {'__update__': {'GCM': 2}}}}, 'ecc_curve': {'__update__': {'NIST': {'__update__': {'P-256': 12, 'P-384': 10, 'P-521': 14}}}}, 'tee_name': {}, 'standard_id': {'__update__': {'FIPS': {'__update__': {'FIPS 140-2': 16}, '__delete__': ['FIPS186-4', 'FIPS 140']}, 'NIST': {'SP 800-52': 1, 'SP 800-56A': 1, 'SP 800-135': 1, 'SP 800-90A': 11}, 'RFC': {'RFC 5288': 1, 'RFC 6071': 1, 'RFC 4106': 1, 'RFC 7296': 1, 'RFC 5282': 1}}}} data.

    The state was updated.

    • The tables_done property was set to True.
  • 03.09.2022 The certificate data changed.
    Certificate changed

    The web extraction data was updated.

    • The module_name property was set to Quantum Security Gateway Cryptographic Library.
    • The date_validation property was updated, with the [[1, '2022-08-26']] values inserted.

    The PDF extraction data was updated.

    • The keywords property was updated, with the {'fips_certlike': {'__update__': {'Certlike': {'__insert__': {'HMAC-SHA-384, 1': 2, 'SHA- 512': 1, 'SHA- 1': 2}, '__update__': {'HMAC-SHA-384': 2, 'SHA-256': 11, 'SHA-512': 10, 'SHA-1': 13}, '__delete__': ['SHA- 256']}}}, 'symmetric_crypto': {'__update__': {'DES': {'__update__': {'3DES': {'__update__': {'Triple-DES': 3}}}}}}, 'asymmetric_crypto': {'__update__': {'FF': {'__update__': {'DH': {'__update__': {'Diffie-Hellman': 2}}}}}}, 'hash_function': {'__update__': {'SHA': {'__update__': {'SHA1': {'__update__': {'SHA-1': 14}}, 'SHA2': {'__update__': {'SHA-256': 11, 'SHA-512': 10, 'SHA-2': 11}}}}}}, 'ecc_curve': {'__update__': {'NIST': {'__update__': {'P-384': 14, 'P-521': 18}}}}, 'standard_id': {'__update__': {'FIPS': {'__insert__': {'FIPS 140': 1}, '__update__': {'FIPS 140-2': 17}}, 'NIST': {'__update__': {'SP 800-1': 1}}}}} data.
    • The st_metadata property was updated, with the {'pdf_file_size_bytes': 1516871, 'pdf_number_of_pages': 25, '/Author': 'huntzh', '/CreationDate': "D:20220819133752-04'00'", '/ModDate': "D:20220819133752-04'00'", '/Producer': 'Microsoft: Print To PDF', 'pdf_hyperlinks': {'_type': 'Set', 'elements': []}} data.
  • 04.08.2022 The certificate data changed.
    Certificate changed

    The web extraction data was updated.

    • The certificate_www property was set to https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/July 2022_010822_0659_signed.pdf.
  • 17.07.2022 The certificate was first processed.
    New certificate

    A new FIPS 140 certificate with the product name Check Point Cryptographic Library was processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 4264,
  "dgst": "7ddb44478c5fe21a",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "DRBG#823",
        "HMAC#2176",
        "CVL#A4283",
        "RSA#A4283",
        "ECDSA#A4283",
        "KAS#514",
        "HMAC#A4283",
        "ECDSA#685",
        "AES#3418",
        "KAS#A4283",
        "AES#A4283",
        "DRBG#A4283",
        "RSA#1750",
        "SHS#A4283",
        "CVL#514",
        "SHS#2824"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "1.1"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECDSA": {
            "ECDSA": 18
          }
        },
        "FF": {
          "DH": {
            "Diffie-Hellman": 5
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 1
        },
        "GCM": {
          "GCM": 2
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "IKE": {
          "IKE": 11,
          "IKEv1": 1,
          "IKEv2": 3
        },
        "IPsec": {
          "IPsec": 5
        },
        "TLS": {
          "TLS": {
            "TLS": 18,
            "TLSv1.2": 1
          }
        }
      },
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 1
        },
        "KEX": {
          "Key Exchange": 2,
          "Key exchange": 2
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "P-256": 14,
          "P-384": 10,
          "P-521": 22
        }
      },
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#1750": 1,
          "#2176": 1,
          "#2824": 1,
          "#3418": 1,
          "#514": 2,
          "#685": 1,
          "#823": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "AES #3418": 1,
          "AES (128": 1,
          "DRBG #823": 1,
          "HMAC #2176": 2,
          "HMAC-SHA-1": 4,
          "HMAC-SHA-256": 4,
          "HMAC-SHA-384": 4,
          "HMAC-SHA-512": 4,
          "SHA- 1": 1,
          "SHA- 512": 1,
          "SHA-1": 12,
          "SHA-14": 1,
          "SHA-256": 9,
          "SHA-384": 7,
          "SHA-512": 8,
          "SHS #2824": 1
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 2
        }
      },
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA-1": 12
          },
          "SHA2": {
            "SHA-256": 9,
            "SHA-384": 7,
            "SHA-512": 8
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 19
        },
        "RNG": {
          "RBG": 1,
          "RNG": 2
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 16
        },
        "NIST": {
          "SP 800-135": 1,
          "SP 800-52": 1,
          "SP 800-56A": 3,
          "SP 800-90A": 12
        },
        "RFC": {
          "RFC 4106": 1,
          "RFC 5282": 1,
          "RFC 5288": 1,
          "RFC 6071": 1,
          "RFC 7296": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 6
          }
        },
        "DES": {
          "3DES": {
            "Triple-DES": 3
          },
          "DES": {
            "DES": 2
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 1,
            "HMAC": 6,
            "HMAC-SHA-256": 2,
            "HMAC-SHA-384": 2,
            "HMAC-SHA-512": 2
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "tsengjk",
      "/CreationDate": "D:20230922094803-04\u002700\u0027",
      "/Creator": "Nuance PDF Create",
      "/ModDate": "D:20230922094810-04\u002700\u0027",
      "/Producer": "Nuance PDF Create",
      "/Title": "Microsoft Word - CMSP Check Point Quantum Security Gateway Cryptographic Library.docx",
      "pdf_file_size_bytes": 551194,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 29
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_garbage": false,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_pdf_hash": "ed89fd97d1f7ef8ad76d2368dc0b743d52a6c66a96d0be0d566f8fea247e90d2",
    "policy_txt_hash": "3afb6e46aca70745ced0499c136b889e84070b30cf6f09c33cf442870a6cab21"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated in FIPS mode and installed, initialized and configured as specified in the Security Policy Section 3 Secure Operation",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/July 2022_010822_0659_signed.pdf",
    "date_sunset": "2026-09-21",
    "description": "The Check Point Cryptographic Library is a firmware module that provides cryptographic services to Check Point products. The module provides a number of NIST validated cryptographic algorithms for services such as IPSec and TLS. The module provides applications with a library interface that enables them to access the various cryptographic algorithm functions supplied by the module.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Mitigation of Other Attacks: N/A"
    ],
    "fw_versions": "1.1",
    "historical_reason": null,
    "hw_versions": null,
    "level": 1,
    "mentioned_certs": {},
    "module_name": "Quantum Security Gateway Cryptographic Library",
    "module_type": "Firmware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "active",
    "sw_versions": null,
    "tested_conf": [
      "Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1530 with a Marvell ARMADA 7040 (ARM Cortex-A72)",
      "Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1535 with a Marvell ARMADA 7040 (ARM Cortex-A72)",
      "Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1550 with a Marvell ARMADA 7040 (ARM Cortex-A72)",
      "Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1555 with a Marvell ARMADA 7040 (ARM Cortex-A72)",
      "Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1570 with a Marvell ARMADA 8040 (ARM Cortex-A72)",
      "Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1570R with a Marvell ARMADA 7040 (ARM Cortex-A72)",
      "Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1575 with a Marvell ARMADA 8040 (ARM Cortex-A72)",
      "Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1575R with a Marvell ARMADA 7040 (ARM Cortex-A72)",
      "Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1590 with a Marvell ARMADA 8040 (ARM Cortex-A72)",
      "Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1595 with a Marvell ARMADA 8040 (ARM Cortex-A72)",
      "Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1600 with a Marvell OCTEON TX2 CN9250 (Marvel TX2)",
      "Check Point Embedded GAiA Operating System version R81.10.10 with Check Point 1800 with a Marvell OCTEON TX2 CN9250 (Marvel TX2)",
      "Check Point GAiA Operating System version R81.20 with Check Point 9100 with a 13th Generation Intel Core i3-13100E (Raptor Lake)",
      "Check Point GAiA Operating System version R81.20 with Check Point 9300 with a 13th Generation Intel Core i5-13400E (Raptor Cove)",
      "Check Point GAiA Operating System version R81.20 with Check Point 9400 with a 13th Generation Intel Core i5-13500E (Raptor Cove)",
      "Check Point GAiA Operating System version R82 with Check Point 9100 with a 13th Generation Intel Core i3-13100E (Raptor Lake)",
      "Check Point GAiA Operating System version R82 with Check Point 9300 with a 13th Generation Intel Core i5-13400E (Raptor Cove)",
      "Check Point GAiA Operating System version R82 with Check Point 9400 with a 13th Generation Intel Core i5-13500E (Raptor Cove)",
      "Check Point GAiA OS version R80.30 on VMware ESXi 6.0.0 running on a HPE DL360 gen 10 with a 2nd Generation Intel Xeon Silver",
      "Check Point GAiA OS version R80.30 with Check Point 16200 Plus with a 2nd Generation Intel Xeon Silver",
      "Check Point GAiA OS version R80.30SP with Check Point 28000 with a 2nd Generation Intel Xeon Gold",
      "Check Point GAiA OS version R81.10 with Check Point 3600 with an Intel Atom C Series",
      "Check Point GAiA OS version R81.10 with Check Point 7000 with a 2nd Generation Intel Xeon Silver (single-user mode)"
    ],
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2022-07-15",
        "lab": "LEIDOS CSTL",
        "validation_type": "Initial"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2022-08-26",
        "lab": "LEIDOS CSTL",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2023-05-30",
        "lab": "LEIDOS CSTL",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2023-09-25",
        "lab": "LEIDOS CSTL",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2025-07-29",
        "lab": "LEIDOS CSTL",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2025-08-27",
        "lab": "GOSSAMER SECURITY SOLUTIONS INC",
        "validation_type": "Update"
      }
    ],
    "vendor": "Check Point Software Technologies Ltd.",
    "vendor_url": "http://www.checkpoint.com"
  }
}