Certes Enforcement Points
Certificate
| Certificate number | 3347 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 1 |
| Module type | Hardware |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Certes Networks, Inc. · website |
| Hardware versions | CEP220, CEP250, CEP300, CEP420, CEP520 |
| Firmware versions | CEP v5.3 |
Module description
The Certes Encryptors, or Certes Enforcement Points (CEP), are purpose-built encryption appliances that provide multi-layer data protection and application segmentation. CEP appliances provide Ethernet frame encryption for Layer 2 networks, IPsec encryption for Layer 3 networks, and data payload encryption for Layer 4 MPLS networks. CEPs operate transparently to the network infrastructure, which ensures all data is encrypted without impacting network performance.
Security level exceptions
- Mitigation of Other Attacks: N/A
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | 5338 |
| CKG | vendor affirmed |
| CVL | 1800, 1827, 1828, 1829 |
| DRBG | 2061 |
| ECDSA | 1402 |
| HMAC | 3535 |
| KBKDF | 193 |
| SHS | 4289 |
Allowed algorithms
EC Diffie-Hellman (CVL Cert. #1800, key agreement; key establishment methodology provides between 128 and 256 bits of encryption strength); NDRNG
Tested configurations
- N/A
Validation history
| Date | Type | Lab |
|---|---|---|
| 2019-01-02 | Initial | DXC Technology |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2019-01-02