808bits

SonicWall Network Security Manager Appliance

FIPS 140-2 certificate #4641 · SonicWall, Inc. · data as of 2026-09-15

SonicWall Network Security Manager Appliance, from SonicWall, Inc., holds FIPS 140-2 certificate #4641 at overall level 1. The validation is active, with a sunset date of 2026-09-21. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.

Active. Sunset date 2026-09-21, 5 days away. This is the FIPS 140-2 sunset: after it, agencies may keep the module only in existing systems.
Caveat: When operated in FIPS mode

Certificate

Certificate number4641
StandardFIPS 140-2
Statusactive
Sunset date2026-09-21
Overall level1
Module typeFirmware
EmbodimentMulti-Chip Stand Alone
VendorSonicWall, Inc. · website
Firmware versions2.3

Module description

Quoted from the NIST CMVP entry for this certificate.

The SonicWall Network Security Manager helps in the deployment and management of all your firewalls, connected switches and access points, all in one easy-to-use interface.

Security level exceptions

  • Roles, Services, and Authentication: Level 2
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A

Approved algorithms (12)

AlgorithmCAVP certificates
AESA1960
CKGvendor affirmed
CVLA1960
DRBGA1960
ECDSAA1960
ENT
HMACA1960
KAS
KAS-SSCA1960
KTS
RSAA1960
SHSA1960

Allowed algorithms

RSA (key wrapping; key establishment methodology provides 112 or 128 bits of encryption strength)

Tested configurations

  • SonicCore OS v6.5.0 on VMware ESXi 6.7 running on Dell PowerEdge R640 with Intel Xeon Silver 4208

Validation history

DateTypeLab
2023-10-25InitialAcumen Security

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status active
  • Validation dates on record: 2023-10-25

Known CVEs in this module family (heuristic match)

Name-based association with the module's product family, not a statement about the validated boundary. See methodology.

CVECVSSSeverity
CVE-2021-451055.9MEDIUM

Source documents