808bits

StoneGate High Availability Firewall and VPN

FIPS 140-2 certificate #344 · Stonesoft Corporation · data as of 2026-09-03

StoneGate High Availability Firewall and VPN, from Stonesoft Corporation, holds FIPS 140-2 certificate #344 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.

Historical. Moved to historical list due to sunsetting. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode

Certificate

Certificate number344
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeFirmware
EmbodimentMulti-chip standalone
VendorStonesoft Corporation · website
Firmware versions2.0.5

Module description

Quoted from the NIST CMVP entry for this certificate.

StoneGate is a firewall and VPN software solution. It features clustering, load balancing between multiple ISPs, encrypted VPN client connectivity and advanced central administration tools.

Security level exceptions

  • Tested: Debian GNU/Linux Version 3.0

Approved algorithms (6)

AlgorithmCAVP certificates
AES39, 40
DSA77, 78
HMAC-SHA-1vendor affirmed
RSAvendor affirmed
SHA-1131, 132
Triple-DES145, 146, 147

Other algorithms

DES (Cert. #194); Blowfish; Twofish; CAST-128; SHA-256 (vendor affirmed; non-compliant); MD5; Diffie-Hellman (key agreement)

Validation history

DateTypeLab
2003-09-16InitialCYGNACOM SOLUTIONS INC
2003-10-07Update
2004-04-29Update

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2003-09-16, 2003-10-07, 2004-04-29

Source documents