808bits

FireEye HX Series: HX4402, HX4502, HX4502D

FIPS 140-2 certificate #4074 · FireEye, Inc. · data as of 2026-08-28
Active. Sunset date 2026-09-21, 23 days away. This is the FIPS 140-2 sunset: after it, agencies may keep the module only in existing systems.
Caveat: When operated in FIPS mode and installed, initialized and configured as specified in Section 3 of the Security Policy

Certificate

Certificate number4074
StandardFIPS 140-2
Statusactive
Sunset date2026-09-21
Overall level1
Module typeHardware
EmbodimentMulti-Chip Stand Alone
VendorFireEye, Inc. · website
Hardware versionsHX4402, HX4502, HX4502D
Firmware versions5.0.4

Module description

The FireEye HX series appliances enable security operations teams to correlate network and endpoint activity. Organizations can automatically investigate alerts generated by FireEye Threat Prevention Platforms, log management, and network security products, apply intelligence from FireEye to continuously validate Indicators of Compromises on the endpoints and identify if a compromise has occurred and assess the potential risk.

Security level exceptions

  • Roles, Services, and Authentication: Level 3
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AESC1720
CKGvendor affirmed
CVLC1720
DRBGC1720, C1934
DSAC1720
ECDSAC1720
HMACC1720, C1934
KAS-SSCvendor affirmed
KTS
KTS
RSAC1720
SHSC1720, C1934
Triple-DESC1720

Allowed algorithms

NDRNG; RSA (key wrapping; key establishment methodology provides 112 or 128 bits of encryption strength)

Tested configurations

  • N/A

Validation history

DateTypeLab
2021-11-18InitialAcumen Security

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status active
  • Validation dates on record: 2021-11-18

Source documents