808bits

ProxySG S400-20 [1], S400-30 [2] and S400-40 [3]

FIPS 140-2 certificate #2256 · Blue Coat® Systems, Inc. · data as of 2026-09-08

ProxySG S400-20 [1], S400-30 [2] and S400-40 [3], from Blue Coat® Systems, Inc., holds FIPS 140-2 certificate #2256 at overall level 2. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.

Historical. Moved to historical list due to sunsetting. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode with the tamper evident seals and the opacity baffle installed as indicated in the Security Policy

Certificate

Certificate number2256
StandardFIPS 140-2
Statushistorical
Overall level2
Module typeHardware
EmbodimentMulti-chip standalone
VendorBlue Coat® Systems, Inc. · website
Hardware versions080-03568 [1], 080-03570 [1], 090-03075 [1], 080-03571 [1], 090-03076 [1], 080-03572 [2], 080-03574 [2], 090-03079 [2], 080-03575 [2], 090-03080 [2], 080-03576 [3], 080-03578 [3], 090-03083 [3], 080-03579 [3], 090-03084 [3] with FIPS Security Kit (Part Number: 085-02891)
Firmware versions6.5.2.9 build 144008

Module description

Quoted from the NIST CMVP entry for this certificate.

Blue Coat ProxySG physical and virtual appliances are the core of the Blue Coat’s Unified Security and Optimization solutions for business assurance. The appliances offer complete security and control of web traffic, providing rich policy constructs for threat protection, SSL traffic, authentication, filtering, data loss prevention and logging capabilities. The appliances also optimize web and internal application traffic through caching, bandwidth management, stream splitting, and protocol optimization for data, video, cloud and web applications.

Security level exceptions

  • Mitigation of Other Attacks: N/A

Approved algorithms (7)

AlgorithmCAVP certificates
AES2931
CVL181, 332
DRBG541
HMAC1700, 1857
RSA1536
SHS2291, 2467
Triple-DES1744

Other algorithms

RSA (key wrapping; key establishment methodology provides between 112 and 150 bits of encryption strength); Diffie-Hellman (key agreement; key establishment methodology provides 112 bits of encryption strength); MD5; PRNG; NDRNG

Validation history

DateTypeLab
2014-09-22InitialCGI Information Systems & Management Consultants Inc

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2014-09-22

Source documents