808bits

SonicWALL TZ 300/TZ 300W, TZ 300P, TZ 350/TZ 350W, TZ 400/TZ 400W, TZ 500/TZ 500W, TZ 600, TZ 600P, SOHO W, SOHO 250/SOHO 250W, SM 9200, SM 9400, SM 9600 and NSa 2650, NSa 3600, NSa 3650, NSa 4600, NSa 4650, NSa 5600, NSa 5650, NSa 6600, NSa 6650, NSa 9250, NSa 9450, NSa 9650

FIPS 140-2 certificate #3658 · SonicWall, Inc. · data as of 2026-08-28
Historical. SP 800-56Arev3 transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode

Certificate

Certificate number3658
StandardFIPS 140-2
Statushistorical
Overall level2
Module typeHardware
EmbodimentMulti-Chip Stand Alone
VendorSonicWall, Inc. · website
Hardware versions101-500403-55 Rev. F (TZ 300), 101-500404-54 Rev. E (TZ 300W), 101-500582-52 Rev A (TZ 300P), 101-500622-52 Rev A (TZ 350), 101-500621-51 Rev A (TZ 350W), 101-500405-55 Rev. F (TZ 400), 101-500406-54 Rev. E (TZ 400W), 101-500411-56 Rev. G (TZ 500), 101-500412-55 Rev. F (TZ 500W), 101-500413-56 Rev. G (TZ 600), 101-500581-51 Rev A (TZ 600P), 101-500410-54 Rev. E (SOHO W), 101-500624-51 Rev A (SOHO 250), 101-500623-52 Rev A (SOHO 250W), 101-500455-54 Rev. E (SM 9200), 101-500454-54 Rev. E (SM 9400), 101-500453-54 Rev. E (SM 9600), 101-500452-50 Rev. A (NSa 2650), 101-500459-54 Rev. E (NSa 3600), 101-500514-50 (NSa 3650), 101-500458-54 Rev. E (NSa 4600), 101-500451-50 (NSa 4650), 101-500457-54 Rev. E (NSa 5600), 101-500517-50 (NSa 5650), 101-500456-54 Rev. E (NSa 6600), 101-5005518-50 Rev A (NSa 6650), 101-500520-50 Rev A (NSa 9250), 101-500519-50 Rev A (NSa 9450), 101-500449-50 Rev A (NSa 9650)
Firmware versionsSonicOS v6.5.4

Module description

The SonicWall family of firewalls tightly integrates intrusion prevention, malware protection, Application Intelligence and Control with real-time Visualization. Dell SonicWALL Reassembly-Free Deep Packet Inspection engine scans 100% of traffic and massively scales to meet needs of the most high-performance networks.

Security level exceptions

  • Cryptographic Module Specification: Level 3
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AESC743
CKGvendor affirmed
CVLC743
DRBGC743
ECDSAC743
HMACC743
KTS
RSAC743
SHSC743

Allowed algorithms

Diffie-Hellman (CVL Certs. #C743 and #C743, key agreement; key establishment methodology provides 112 bits of encryption strength); EC Diffie-Hellman (CVL Certs. #C743 and #C743, key agreement; key establishment methodology provides 128 or 192 bits of encryption strength); NDRNG; RSA (key wrapping; key establishment methodology provides 112 bits of encryption strength)

Tested configurations

  • N/A

Validation history

DateTypeLab
2020-05-26InitialAcumen Security
2021-05-17UpdateAcumen Security

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2020-05-26, 2021-05-17

Source documents