Cisco Firepower 2100 Cryptographic Module
Certificate
| Certificate number | 3251 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 2 |
| Module type | Hardware |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Cisco Systems, Inc. · website |
| Hardware versions | FP2110, FP2120, FP2130, FP2140 with FIPS Kit (AIR-AP-FIPSKIT=) and opacity shield 69-100250-01 |
| Firmware versions | 9.8 |
Module description
Cisco Firepower 2100 Series is a family of four threat-focused NGFW security platforms. These are all next generation security services platforms capable of running multiple (firewall (NGFW), traffic management) security services simultaneously.
Security level exceptions
- Roles, Services, and Authentication: Level 3
- Mitigation of Other Attacks: N/A
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | 4234, 4905 |
| CKG | vendor affirmed |
| CVL | 983, 1521 |
| DRBG | 1317, 1735 |
| ECDSA | 1254 |
| HMAC | 2772, 3272 |
| RSA | 2286, 2678 |
| SHS | 3471, 4012 |
| Triple-DES | 2293, 2559 |
Allowed algorithms
Diffie-Hellman (CVL Certs. #983 and #1521, key agreement; key establishment methodology provides between 112 and 150 bits of encryption strength); EC Diffie-Hellman (CVL Certs. #983 and #1521, key agreement; key establishment methodology provides between 128 and 256 bits of encryption strength); NDRNG; RSA (key wrapping; key establishment methodology provides 112 bits of encryption strength)
Tested configurations
- N/A
Validation history
| Date | Type | Lab |
|---|---|---|
| 2018-07-27 | Initial | Gossamer Security Solutions |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2018-07-27