FireEye HX Series: HX4402, HX4502, HX4502D
Caveat: When operated in FIPS mode and installed, initialized and configured as specified in Section 3 of the Security Policy
Certificate
| Certificate number | 4074 |
|---|---|
| Standard | FIPS 140-2 |
| Status | active |
| Sunset date | 2026-09-21 |
| Overall level | 1 |
| Module type | Hardware |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | FireEye, Inc. · website |
| Hardware versions | HX4402, HX4502, HX4502D |
| Firmware versions | 5.0.4 |
Module description
The FireEye HX series appliances enable security operations teams to correlate network and endpoint activity. Organizations can automatically investigate alerts generated by FireEye Threat Prevention Platforms, log management, and network security products, apply intelligence from FireEye to continuously validate Indicators of Compromises on the endpoints and identify if a compromise has occurred and assess the potential risk.
Security level exceptions
- Roles, Services, and Authentication: Level 3
- Design Assurance: Level 3
- Mitigation of Other Attacks: N/A
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | C1720 |
| CKG | vendor affirmed |
| CVL | C1720 |
| DRBG | C1720, C1934 |
| DSA | C1720 |
| ECDSA | C1720 |
| HMAC | C1720, C1934 |
| KAS-SSC | vendor affirmed |
| KTS | |
| KTS | |
| RSA | C1720 |
| SHS | C1720, C1934 |
| Triple-DES | C1720 |
Allowed algorithms
NDRNG; RSA (key wrapping; key establishment methodology provides 112 or 128 bits of encryption strength)
Tested configurations
- N/A
Validation history
| Date | Type | Lab |
|---|---|---|
| 2021-11-18 | Initial | Acumen Security |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status active
- Validation dates on record: 2021-11-18