808bits

Cisco Adaptive Security Appliance (ASA) Virtual

FIPS 140-2 certificate #3267 · Cisco Systems, Inc. · data as of 2026-08-28
Historical. SP 800-56Arev3 transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode

Certificate

Certificate number3267
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorCisco Systems, Inc. · website
Software versions9.8

Module description

The market-leading Cisco ASA Security Appliance Series deliver robust user and application policy enforcement, multi-vector attack protection, and secure connectivity services in cost-effective, easy-to-deploy solutions. The ASA Virtual Adaptive Security Appliances provide comprehensive security, performance, and reliability for network environments of all sizes.

Security level exceptions

  • Roles, Services, and Authentication: Level 2
  • Physical Security: N/A
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES5008
CKGvendor affirmed
CVL1561
DRBG1828
ECDSA1277
HMAC3329
RSA2703
SHS4074
Triple-DES2584

Allowed algorithms

Diffie-Hellman (CVL Cert. #1561, key agreement; key establishment methodology provides between 112 and 150 bits of encryption strength); NDRNG; RSA (key wrapping; key establishment methodology provides 112 bits of encryption strength)

Tested configurations

  • ASA Virtual 9.8 on NFVIS 3.5 running on ENCS-5412 (single-user mode)
  • ASA Virtual 9.8 on VMware ESXi 5.5 running on Cisco C220 M4
  • ASA Virtual 9.8 on VMware ESXi 6.0 running on Cisco C220 M4

Validation history

DateTypeLab
2018-08-23InitialGossamer Security Solutions

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2018-08-23

Source documents