808bits

7206VXR NPE-G2 with VSA

FIPS 140-2 certificate #1455 · Cisco Systems, Inc. · data as of 2026-08-28
Historical. RNG SP800-131A Revision 1 Transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode and with the tamper evident seals installed as indicated in the Security Policy

Certificate

Certificate number1455
StandardFIPS 140-2
Statushistorical
Overall level2
Module typeHardware
EmbodimentMulti-chip standalone
VendorCisco Systems, Inc. · website
Hardware versions7206VXR Version: 2.9 with NPE-G2 Version: 1.0 and VSA Version: 1.0
Firmware versions12.4(15)T10 or 12.4(15)T14

Module description

Cisco Modular Access Routers are routers that provide data protection on a network providing packet encryption. The module performs all of the functions typical of a router. In addition to the normal routing functions, the module also provides packet encryption. The module is capable of encrypting traffic between one or more modules: providing a secure connection at the packet level.

Approved algorithms

AlgorithmCAVP certificate
AES91
HMAC203
RNG786
RSA707
SHS500, 1303
Triple-DES204

Other algorithms

MD4; MD5; HMAC MD5; Diffie-Hellman (key agreement; key establishment methodology provides 80 or 96 bits of encryption strength; non-compliant); DES; AES (non-compliant); Triple-DES (non-compliant); HMAC (non-compliant); GDOI (key wrapping, key establishment methodology provides 128 or 256 bits of encryption strength)

Validation history

DateTypeLab
2010-11-29InitialSAIC-VA
2011-07-27UpdateSAIC-VA
2012-02-23Update

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2010-11-29, 2011-07-27, 2012-02-23

Source documents