808bits

Device Cryptographic Module

FIPS 140-3 certificate #4733 · F5, Inc. · data as of 2026-09-13

Device Cryptographic Module, from F5, Inc., holds FIPS 140-3 certificate #4733 at overall level 2. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.

Historical. Moved to historical list due to sunsetting. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: Interim Validation. When operated in approved mode. When installed, initialized and configured as specified in Section 11 of the Security Policy. The tamper evident seals with F5-ADD-BIG-FIPS140 kit installed as indicated in the Security Policy.

Certificate

Certificate number4733
StandardFIPS 140-3
Statushistorical
Overall level2
Module typeHardware
EmbodimentMulti-Chip Stand Alone
VendorF5, Inc. · website
Hardware versionsBIG-IP i4600, BIG-IP i4800, BIG-IP i5600, BIG-IP i5800, BIG-IP i5820-DF, BIG-IP i7600, BIG-IP i7800, BIG-IP i7820-DF, BIG-IP i10600, BIG-IP i10800, BIG-IP i11600-DS, BIG-IP i11800-DS, BIG-IP i15600, BIG-IP i15800, BIG-IP i15820-DF, VIPRION B2250, VIPRION B4450
Firmware versions16.1.3.1

Module description

Quoted from the NIST CMVP entry for this certificate.

F5® Device Cryptographic Module, Application Delivery Controller and Firewall software running on F5 BIG-IP.

Security level exceptions

  • Operational environment: N/A
  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A

Approved algorithms (28)

AlgorithmCAVP certificates
AES-CBCA2594, A2671
AES-CCMA2594, A2671
AES-CTRA2594
AES-ECBA2594
AES-GCMA2594, A2671
AES-GMACA2594, A2671
Counter DRBGA2594, A2671
ECDSA KeyGen (FIPS186-4)A2594, A2671
ECDSA KeyVer (FIPS186-4)A2594, A2671
ECDSA SigGen (FIPS186-4)A2594, A2671
ECDSA SigVer (FIPS186-4)A2594, A2671
HMAC-SHA-1A2594, A2671
HMAC-SHA2-256A2594, A2671
HMAC-SHA2-384A2594, A2671
HMAC-SHA2-512A2594, A2671
KAS-ECC-SSC Sp800-56Ar3A2594, A2671
KAS-FFC-SSC Sp800-56Ar3A2594, A2671
KDF SSHA2594
KDF TLSA2594, A2671
RSA KeyGen (FIPS186-4)A2594
RSA SigGen (FIPS186-4)A2594, A2671
RSA SigVer (FIPS186-4)A2594, A2671
Safe Primes Key GenerationA2594, A2671
Safe Primes Key VerificationA2594, A2671
SHA-1A2594, A2671
SHA2-256A2594, A2671
SHA2-384A2594, A2671
SHA2-512A2594, A2671

Validation history

DateTypeLab
2024-07-22Initialatsec information security corporation

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2024-07-22

Source documents