808bits

Huawei USG 6000 Series Firewall

FIPS 140-2 certificate #3036 · Huawei Technologies Co., Ltd. · data as of 2026-08-28
Historical. 186-2 transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode and with the tamper evident seals installed as indicated in the Security Policy

Certificate

Certificate number3036
StandardFIPS 140-2
Statushistorical
Overall level2
Module typeHardware
EmbodimentMulti-Chip Stand Alone
VendorHuawei Technologies Co., Ltd. · website
Hardware versionsUSG6310S (P/N 50050064 Rev. G), USG6370 (P/N 0235G7LL Rev. P.4), USG6620 (P/N 02359519 Rev. G.3), USG6650 (P/N 0235G7G4 Rev. U.3) and USG6680 (P/N 0235G7G7 Rev. U.2); External Baffle: 99089JEB, Version A.2; Tamper Seal 4057-113016, Version A.3
Firmware versionsV500R001C50

Module description

The Huawei USG6000 Series Firewalls is designed for large- and medium sized enterprises and next-generation data centers. Provide fine-grained service access control and service acceleration through context awareness by Application, Content, Time, User, Attack, or location (ACTUAL). The USG6000 integrates application-layer protection functions, such as Intrusion Prevention System (IPS), anti-virus, and URL filtering with application identification technologies to improve the threat defense efficiency and accuracy.

Security level exceptions

  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES4449, 4451
CKGvendor affirmed
CVL1148, 1149, 1152, 1153
DRBG1440, 1442
ECDSA1084
HMAC2952, 2954
KTS
KTS
RSA2430, 2432
SHS3662, 3664
Triple-DES2391, 2393

Allowed algorithms

Diffie-Hellman (CVL Certs. #1148 and #1152, key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); EC Diffie-Hellman (CVL Certs. #1149 and #1153, key agreement; key establishment methodology provides between 112 and 256 bits of encryption strength); MD5; NDRNG; RSA (key wrapping; key establishment methodology provides 112 or 128 bits of encryption strength)

Tested configurations

  • N/A

Validation history

DateTypeLab
2017-10-04InitialUL Verification Services, Inc.

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2017-10-04

Source documents