Cisco Firepower Management Center Virtual (FMCv) Cryptographic Module
Cisco Firepower Management Center Virtual (FMCv) Cryptographic Module, from Cisco Systems, Inc., holds FIPS 140-2 certificate #3355 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.
Certificate
| Certificate number | 3355 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 1 |
| Module type | Software |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Cisco Systems, Inc. · website |
| Software versions | 6.2 |
Module description
Quoted from the NIST CMVP entry for this certificate.
The Firepower Management Center Virtual working like the Firepower Management Center appliance aggregates and correlates network traffic information and performance data, assessing the impact of events on particular hosts. You can monitor the information that your device reports, and assess and control the overall activity that occurs on your network. The FMCv also controls the network management features on your devices: switching, routing, NAT and VPN.
Security level exceptions
- Roles, Services, and Authentication: Level 3
- Physical Security: N/A
- Design Assurance: Level 2
- Mitigation of Other Attacks: N/A
Approved algorithms (9)
| Algorithm | CAVP certificates |
|---|---|
| AES | 4768 |
| CKG | vendor affirmed |
| CVL | 1413 |
| DRBG | 1649 |
| ECDSA | 1197 |
| HMAC | 3181 |
| RSA | 2609 |
| SHS | 3913 |
| Triple-DES | 2534 |
Allowed algorithms
Diffie-Hellman (CVL Cert. #1413, key agreement; key establishment methodology provides between 112 and 150 bits of encryption strength); EC Diffie-Hellman (CVL Cert. #1413, key agreement; key establishment methodology provides between 128 and 256 bits of encryption strength); NDRNG; RSA (key wrapping; key establishment methodology provides 112 bits of encryption strength)
Tested configurations
- FXOS version 2 on Vmware ESXi 5.5 running on Cisco C220 M4 with Intel Xeon E5
- FXOS version 2 on Vmware ESXi 6.0 running on Cisco C220 M4 with Intel Xeon E5 (single-user mode)
Validation history
| Date | Type | Lab |
|---|---|---|
| 2019-01-31 | Initial | Gossamer Security Solutions |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2019-01-31