808bits

Check Point Cryptographic Library

FIPS 140-2 certificate #2995 · Check Point Software Technologies Ltd. · data as of 2026-08-28
Historical. SP 800-56Arev3 transition - replaced by certificate #4264. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode and installed, initialized and configured as specified in the Security Policy Section 3 Secure Operation

Certificate

Certificate number2995
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeFirmware
EmbodimentMulti-Chip Stand Alone
VendorCheck Point Software Technologies Ltd. · website
Firmware versions1.0

Module description

The Check Point Cryptographic Library is a firmware module that provides cryptographic services to Check Point products. The module provides a number of NIST validated cryptographic algorithms for services such as IPSec and TLS. The module provides applications with a library interface that enables them to access the various cryptographic algorithm functions supplied by the module. For the purposes of FIPS 140-2 testing, the module was evaluated running on the Check Point 12400 appliance.

Security level exceptions

  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES3418
CVL514, 920
DRBG823
ECDSA685
HMAC2176
RSA1750
SHS2824
Triple-DES1929

Allowed algorithms

Diffie-Hellman (CVL Cert. #920, key agreement; key establishment methodology provides between 112 and 128 bits of encryption strength); NDRNG; RSA (key wrapping; key establishment methodology provides 112 or 128 bits of encryption strength)

Tested configurations

  • Check Point 12400 appliance with Check Point OS Version R77.30

Validation history

DateTypeLab
2017-08-16InitialDXC Technology
2017-08-18UpdateDXC Technology

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2017-08-16, 2017-08-18

Source documents