808bits

Edge SWG

FIPS 140-3 certificate #4873 · Symantec, A Division of Broadcom · data as of 2026-08-28
Historical. Replaced by certificate #5383. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: Interim Validation. When operated in approved mode and when installed, initialized and configured as specified in Section 11.1.1 of the Security Policy. The protocols TLS v1.0 and v1.1 shall not be used when operated in approved mode.

Certificate

Certificate number4873
StandardFIPS 140-3
Statushistorical
Overall level1
Module typeSoftware-hybrid
EmbodimentMulti-Chip Stand Alone
VendorSymantec, A Division of Broadcom · website
Software versions7.4
Hardware versionsIntel Xeon Silver 4210, Intel Xeon Silver 4216
EntropyENT (P)

Module description

The Edge SWG appliances from Symantec provide companies the ability to deploy a scalable proxy-based security solution to protect their organization against advanced threats. The Edge SWG acts as gateway between web users and the Internet: a single point where all web traffic can be monitored and corporate policies for web use can be enforced.

Security level exceptions

  • Roles, services, and authentication: Level 2
  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES-CBCA2936
AES-CTRA2936
AES-GCMA2936
Counter DRBGA2936
HMAC-SHA-1A2936
HMAC-SHA-1A3192
HMAC-SHA2-224A2936
HMAC-SHA2-256A2936
HMAC-SHA2-384A2936
HMAC-SHA2-512A2936
KAS-FFC-SSC Sp800-56Ar3A2936
KDF SNMPA2936
KDF SSHA2936
KDF TLSA2936
PBKDFA2936
RSA KeyGen (FIPS186-4)A2936
RSA SigGen (FIPS186-4)A2936
RSA SigVer (FIPS186-4)A2936
RSA SigVer (FIPS186-4)A3192
Safe Primes Key GenerationA2936
Safe Primes Key VerificationA2936
SHA-1A2936
SHA-1A3192
SHA2-224A2936
SHA2-256A2936
SHA2-256A3192
SHA2-384A2936
SHA2-512A2936
TLS v1.3 KDFA2936

Tested configurations

  • SGOS v7.4 with KVM v2.3 running on Symantec SSP-S410 with Intel Xeon Silver 4210 with PAA
  • SGOS v7.4 with VMware ESXi v6.5 running on Dell PowerEdge R440 with Intel Xeon Silver 4216 with PAA

Validation history

DateTypeLab
2024-11-11InitialAcumen Security

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2024-11-11

Source documents