Certificate 2620 - Palo Alto Networks VM-Series
intCertNum 2620
strVendorName Palo Alto Networks
strURL http://www.paloaltonetworks.com
strAddress1 4301 Great America Parkway
strAddress2
strAddress3
strCity Santa Clara
strStateProv CA
strPostalCode 95054
strCountry 95054
strContact Richard Bishop
strEmail rbishop@paloaltonetworks.com
strPhone 408-753-4000
strFax
strContact2 Jake Bajic
strEmail2 jbajic@paloaltonetworks.com
strFax2
strPhone2 408-753-4000
intCertNum 2620
strModuleName Palo Alto Networks VM-Series
strPartNumber Software Version: 7.0.1-h4 or 7.0.3
memModuleNotes When operated in FIPS mode.
str140Version 140-2
_sp_ Security Policy   [pdf][html][txt]
_cert_ Certificate   [pdf]
strPURL
strModuleType Software
strValidationDate 04/21/2016
intOverallLevel 1
memIndividualLevelNotes -Roles, Services, and Authentication: Level 3;-Physical Security: N/A;-Design Assurance: Level 3;-Mitigation of Other Attacks: N/A;-Operational Environment: VMware ESXi 5.5 running on PA-VM-ESX-7.0.1.ova or PA-VM-NSX-7.0.1.ova; CentOS 6.5 - KVM running on PA-VM-KVM-7.0.1.qcow2; Citrix XenServer 6.1.0 running on PA-VM-SDX-7.0.1.xva (single-user mode)
strFIPSAlgorithms AES (Cert. #3501);
ECDSA (Cert. #714);
RSA (Cert. #1797);
HMAC (Cert. #2235);
SHS (Cert. #2888);
DRBG (Cert. #871);
CVL (Certs. #568, #569, #570 and #571)
strOtherAlgorithms EC Diffie-Hellman (CVL Cert. #569, key agreement: key establishment methodology provides 128 or 192 bits of encryption strength;
non-compliant less than 112 bits of encryption strength);
AES (Cert. #3501, key wrapping;
key establishment methodology provides 128 or 256 bits of encryption strength);
RSA (key wrapping;
key establishment methodology provides 112 or 128 bits of encryption strength;
non-compliant less than 112 bits of encryption strength);
Diffie-Hellman (key agreement: key establishment methodology provides 112 bits of encryption strength;
non-compliant less than 112 bits of encryption strength);
NDRNG;
MD5;
RIPEMD;
Camellia;
SEED;
Triple-DES (non-compliant);
Blowfish;
CAST;
RC4;
UMAC;
HMAC-MD5;
HMAC-RIPEMD;
DSA (non-compliant)
strConfiguration Multi-Chip Stand Alone
memModuleDescription The VM-Series allows you to protect your applications and data from cyber threats with our next-generation firewall security and advanced threat prevention features.
intModuleCount 1
memAdditionalNotes
strFirstValidtionDate 04/21/16 00:00:00
strLabName InfoGard
strValidationYear 2016