FortiProxy-400E/2000E/4000E
Certificate
| Certificate number | 3628 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 2 |
| Module type | Hardware |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Fortinet, Inc. · website |
| Hardware versions | C1AG57, C1AD93 and C1AG58 with Tamper Evident Seal Kit: FIPS-SEAL-RED |
| Firmware versions | FortiProxy 1.0, b0066, 190423 |
Module description
FortiProxy is a secure web/application proxy that protects users against internet-borne attacks by incorporating multiple detection techniques such as web filtering, DNS filtering, data loss prevention, antivirus, intrusion prevention and advanced threat protection. It helps enterprises enforce internet compliance using granular application control.
Security level exceptions
- Roles, Services, and Authentication: Level 3
- Design Assurance: Level 3
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | C655, C702, C703, C787, C806, C813, C832 |
| CVL | C702, C703, C806, C813, C832 |
| DRBG | C658, C799 |
| ECDSA | C702, C703, C806, C813, C832 |
| HMAC | C702, C703, C806, C813, C832 |
| KTS | |
| KTS | |
| RSA | C702, C806, C813 |
| SHS | C702, C703, C806, C813, C832 |
Allowed algorithms
Diffie-Hellman (CVL Certs. #C702, #C703, #C806 and #C832, key agreement; key establishment methodology provides between 112 and 196 bits of encryption strength); EC Diffie-Hellman (CVL Certs. #C702 and #C806, key agreement; key establishment methodology provides 128 bits of encryption strength); NDRNG; RSA (key wrapping; key establishment methodology provides 112 bits of encryption strength)
Tested configurations
- N/A
Validation history
| Date | Type | Lab |
|---|---|---|
| 2020-03-04 | Initial | Lightship Security, Inc. |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2020-03-04