808bits

Symantec Content Analysis Virtual Appliance

FIPS 140-2 certificate #4456 · Symantec, A Division of Broadcom · data as of 2026-08-28
Active. Sunset date 2026-09-21, 23 days away. This is the FIPS 140-2 sunset: after it, agencies may keep the module only in existing systems.
Caveat: When installed, initialized and configured as specified in Section 3 of the Security Policy.

Certificate

Certificate number4456
StandardFIPS 140-2
Statusactive
Sunset date2026-09-21
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorSymantec, A Division of Broadcom · website
Software versions3.1.3.0

Module description

The Symantec Content Analysis (CAS) is a critical component of effective protection against advanced targeted attacks achieved via multi-layer file inspection and sandboxing. Together with ProxySG or Symantec Messaging Gateway (SMG), it offers the most complete advanced threat protection in the marketplace for blocking known threats and analyzing zero-day and other advanced threats.

Security level exceptions

  • Roles, Services, and Authentication: Level 2
  • Physical Security: N/A
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AESA1763, A1764
CKGvendor affirmed
CVLA1764
DRBGA1763, A1764
ENT
HMACA1762, A1764
KAS
KAS-SSCA1764
KTS
KTS
KTS-RSA
RSAA1762, A1764
SHSA1762, A1763, A1764

Tested configurations

  • KVM on Centos 7 running on a Symantec ISG SSP-S410-10 with an Intel® Xeon® Silver 4210 (single-user mode)

Validation history

DateTypeLab
2023-03-22InitialLightship Security, Inc.

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status active
  • Validation dates on record: 2023-03-22

Source documents