StoneGate Firewall / VPN Core
StoneGate Firewall / VPN Core, from Stonesoft Corporation, holds FIPS 140-2 certificate #1263 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.
Certificate
| Certificate number | 1263 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 1 |
| Module type | Firmware |
| Embodiment | Multi-chip standalone |
| Vendor | Stonesoft Corporation · website |
| Firmware versions | 4.2.2.5708.cc3.1 |
Module description
Quoted from the NIST CMVP entry for this certificate.
StoneGate Firewall/VPN Core 4.2.2.5798.cc3.1 provides IPsec compliant VPN connectivity between two firewall clusters (site to site connectivity) and remote IPsec compliant VPN connectivity between VPN clients the firewall cluster.
Security level exceptions
- Tested: StoneGate FW-1020 hardware with Debian GNU/Linux 4.0 (Linux kernel 2.6.17.13)
Approved algorithms (7)
Other algorithms
Diffie-Hellman (key agreement; key establishment methodology provides 112 bits of encryption strength; non-compliant less than 112 bits of encryption strength); Blowfish; Twofish; Cast-128; DES; MD5; HMAC-MD5; AES-XCBC-MAC (non compliant); Triple DES-ECB (non compliant)
Validation history
| Date | Type | Lab |
|---|---|---|
| 2010-02-16 | Initial | BT |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2010-02-16