Security Gateway
Security Gateway, from Check Point Software Technologies Ltd., holds FIPS 140-2 certificate #1977 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.
Certificate
| Certificate number | 1977 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 1 |
| Module type | Firmware |
| Embodiment | Multi-chip standalone |
| Vendor | Check Point Software Technologies Ltd. · website |
| Firmware versions | R70.1 with R7x hotfix |
Module description
Quoted from the NIST CMVP entry for this certificate.
Check Point VPN-1 Security Gateway allows enterprises and managed service providers to provide firewall, VPN, and intrusion prevention functionality on a single hardware platform.
Security level exceptions
- Roles, Services, and Authentication: Level 2
- Design Assurance: Level 3
- Tested: Power-1 9070 with Check Point SecurePlatform Operating System Version R70.1
Approved algorithms (6)
Other algorithms
CAST 40; CAST 128; HMAC-MD5; MD5; DES; AES-CMAC (non-compliant); Diffie-Hellman (key agreement; key establishment methodology provides between 112 and 128 bits of encryption strength; non-compliant less than 112 bits of encryption strength); RSA (key wrapping; key establishment methodology provides 112 or 150 bits of encryption strength); Triple-DES (Cert. #1313, key wrapping; key establishment methodology provides 112 bits of encryption strength)
Validation history
| Date | Type | Lab |
|---|---|---|
| 2013-07-17 | Initial | CYGNACOM SOLUTIONS INC |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2013-07-17