McAfee Firewall Enterprise 1100F

Certificate #1870

Webpage information

Status historical
Historical reason RNG SP800-131A Revision 1 Transition
Validation dates 08.01.2013
Standard FIPS 140-2
Security level 2
Type Hardware
Embodiment Multi-Chip Stand Alone
Caveat When operated in FIPS mode with the tamper evident seals and opacity baffles installed and initializing the module as specified in Section 3.1.1 of the Security Policy
Description McAfee Firewall Enterprise solutions provide unmatched protection for the enterprise in the most mission-critical and sensitive environments. McAfee's Firewall Enterprise appliances are created to meet the specific needs of organizations of all types and enable those organizations to reduce costs and mitigate the evolving risks that threaten today's networks and applications.
Version (Hardware) NSA-1100-FWEX-F and FIPS Kit: SAC-1100F-FIPS-KT
Version (Firmware) 7.0.1.03 and 8.2.0
Vendor McAfee, Inc.
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, AES-128, AES-, AES-256, CAST, RC2, RC4, DES, Triple-DES, HMAC
Asymmetric Algorithms
Diffie-Hellman, DH, DSA
Hash functions
SHA-1, SHA-256, SHA-384, SHA-512, MD5
Schemes
MAC, Key Exchange, Key Agreement, Key agreement
Protocols
SSH, SSL, TLS, TLS 1.0, IKE, IPsec, VPN
Randomness
PRNG, RNG
Block cipher modes
ECB, CBC, CFB, OFB

Security level
Level 2, Level 1, Level 9

Standards
FIPS 140-2, PKCS16

File metadata

Title Security Policy
Subject McAfee Firewall Enterprise 1100F
Author Darryl H. Johnson
Creation date D:20121010154619-04'00'
Modification date D:20121010154619-04'00'
Pages 35
Creator Microsoft® Office Word 2007
Producer Microsoft® Office Word 2007

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 1870,
  "dgst": "cf085574d40ec958",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "RSA#470",
        "SHS#942",
        "Triple-DES#1185",
        "Triple-DES#765",
        "RNG#964",
        "Triple-DES#766",
        "AES#972",
        "RNG#551",
        "RSA#469",
        "SHS#1612",
        "SHS#943",
        "RNG#549",
        "HMAC#546",
        "HMAC#544",
        "DSA#339",
        "HMAC#545",
        "AES#974",
        "AES#973",
        "DSA#338",
        "HMAC#1086",
        "RNG#550",
        "AES#1833",
        "SHS#941",
        "Triple-DES#767"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "7.0.1.03",
        "8.2.0"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "FF": {
          "DH": {
            "DH": 3,
            "Diffie-Hellman": 5
          },
          "DSA": {
            "DSA": 16
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 5
        },
        "CFB": {
          "CFB": 2
        },
        "ECB": {
          "ECB": 4
        },
        "OFB": {
          "OFB": 3
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "IKE": {
          "IKE": 15
        },
        "IPsec": {
          "IPsec": 16
        },
        "SSH": {
          "SSH": 19
        },
        "TLS": {
          "SSL": {
            "SSL": 8
          },
          "TLS": {
            "TLS": 50,
            "TLS 1.0": 1
          }
        },
        "VPN": {
          "VPN": 8
        }
      },
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 14,
          "Key agreement": 1
        },
        "KEX": {
          "Key Exchange": 2
        },
        "MAC": {
          "MAC": 1
        }
      },
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#1": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "AES- 256": 6,
          "AES-128": 6,
          "AES-256": 3,
          "HMAC SHA-1": 3,
          "HMAC-SHA1": 2,
          "HMAC18": 2,
          "PKCS16": 2,
          "RSA15": 1,
          "SHA-1": 9,
          "SHA-256": 4,
          "SHA-384": 4,
          "SHA-512": 2,
          "SHA-512 544": 1,
          "SHA-512 941": 1
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 1,
          "Level 2": 5,
          "Level 9": 1
        }
      },
      "hash_function": {
        "MD": {
          "MD5": {
            "MD5": 1
          }
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 9
          },
          "SHA2": {
            "SHA-256": 4,
            "SHA-384": 4,
            "SHA-512": 4
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "PRNG": 14
        },
        "RNG": {
          "RNG": 4
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 18
        },
        "PKCS": {
          "PKCS16": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 8,
            "AES-": 6,
            "AES-128": 6,
            "AES-256": 3
          },
          "CAST": {
            "CAST": 2
          },
          "RC": {
            "RC2": 1,
            "RC4": 1
          }
        },
        "DES": {
          "3DES": {
            "Triple-DES": 9
          },
          "DES": {
            "DES": 4
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 8
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "Darryl H. Johnson",
      "/CreationDate": "D:20121010154619-04\u002700\u0027",
      "/Creator": "Microsoft\u00ae Office Word 2007",
      "/ModDate": "D:20121010154619-04\u002700\u0027",
      "/Producer": "Microsoft\u00ae Office Word 2007",
      "/Subject": "McAfee Firewall Enterprise 1100F",
      "/Title": "Security Policy",
      "pdf_file_size_bytes": 1350242,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "http://mysupport.mcafee.com/",
          "http://csrc.nist.gov/groups/STM/cmvp/documents/140-1/140val-all.htm",
          "http://www.corsec.com/",
          "http://csrc.nist.gov/groups/STM/cmvp",
          "http://www.mcafee.com/",
          "mailto:[email protected]"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 35
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "9c14d5a3bd3db39a36fd46f893610b6ac0f947db2843e430c5f13644ead51d0b",
    "policy_txt_hash": "175da97315ea39044392518ba565b2e5f5193b723083a902cc5fbe8505fbeecd"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated in FIPS mode with the tamper evident seals and opacity baffles installed and initializing the module as specified in Section 3.1.1 of the Security Policy",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/FIPS140ConsolidatedCertList0025.pdf",
    "date_sunset": null,
    "description": "McAfee Firewall Enterprise solutions provide unmatched protection for the enterprise in the most mission-critical and sensitive environments. McAfee\u0027s Firewall Enterprise appliances are created to meet the specific needs of organizations of all types and enable those organizations to reduce costs and mitigate the evolving risks that threaten today\u0027s networks and applications.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": null,
    "fw_versions": "7.0.1.03 and 8.2.0",
    "historical_reason": "RNG SP800-131A Revision 1 Transition",
    "hw_versions": "NSA-1100-FWEX-F and FIPS Kit: SAC-1100F-FIPS-KT",
    "level": 2,
    "mentioned_certs": {},
    "module_name": "McAfee Firewall Enterprise 1100F",
    "module_type": "Hardware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2013-01-08",
        "lab": "EWA - Canada",
        "validation_type": "Initial"
      }
    ],
    "vendor": "McAfee, Inc.",
    "vendor_url": "http://www.mcafee.com"
  }
}