Certificate 1877 - PA-500, PA-2000 Series, PA-4000 Series, and PA-5000 Series Firewalls
intCertNum 1877
strVendorName Palo Alto Networks
strURL http://www.paloaltonetworks.com
strAddress1 3300 Olcott Street
strAddress2
strAddress3
strCity Santa Clara
strStateProv CA
strPostalCode 95054
strCountry 95054
strContact Jake Bajic
strEmail jbajic@paloaltonetworks.com
strPhone 408-753-3901
strFax 408-753-4001
strContact2
strEmail2
strFax2
strPhone2
intCertNum 1877
strModuleName PA-500, PA-2000 Series, PA-4000 Series, and PA-5000 Series Firewalls
strPartNumber Hardware Versions: HW P/Ns 910‐000006‐00O Rev. O with FIPS Kit P/N 920‐000005‐00A Rev. A (PA‐500), 910‐000094‐00O Rev. O with FIPS Kit P/N 920‐000005‐00A (PA‐500‐2GB), 910‐000004‐00Z Rev. Z with FIPS Kit P/N 920‐000004‐00A Rev. A (PA‐2020), 910‐000003‐00Z Rev. Z with FIPS Kit P/N 920‐000004‐00A Rev. A (PA‐2050), 910‐000002‐00AB Rev. AB with FIPS Kit P/N 920‐000003‐00A Rev. A (PA‐4020), HW P/N 910‐000001‐00AB Rev. AB with FIPS Kit P/N 920‐000003‐00A Rev. A (PA‐4050), 910‐000005‐00S Rev. S with FIPS Kit P/N 920‐000003‐00A Rev. A (PA‐4060), 910‐000010‐00F Rev. F w/ FIPS Kit P/N 920‐000037‐00A Rev. A (PA‐5020), 910‐000009‐00F Rev. F w/ FIPS Kit P/N 920‐000037‐00A Rev. A (PA‐5050) and 910‐000008‐00F Rev. F w/ FIPS Kit P/N 920‐000037‐00A Rev. A (PA‐5060);
Firmware Version: 4.0.10 or 4.0.12‐h2
memModuleNotes When operated in FIPS mode and with the tamper evident seals and opacity shields installed as indicated in the Security Policy
str140Version 140-2
_sp_ Security Policy   [pdf][html][txt]
_cert_ Certificate   [pdf]
strPURL
strModuleType Hardware
strValidationDate 01/30/2013;08/16/2013
intOverallLevel 2
memIndividualLevelNotes -Cryptographic Module Specification: Level 3;-Roles, Services, and Authentication: Level 3;-Design Assurance: Level 3
strFIPSAlgorithms AES (Cert. #1987);
RSA (Cert. #1031);
HMAC (Cert. #1201);
SHS (Cert. #1743);
RNG (Cert. #1044)
strOtherAlgorithms Diffie-Hellman (key agreement: key establishment methodology provides 112 bits of encryption strength);
RSA (key wrapping;
key establishment methodology provides 112 bits of encryption strength);
NDRNG;
MD5;
RC4;
Camellia;
RC2;
SEED;
DES
strConfiguration Multi-chip standalone
memModuleDescription The Palo Alto Networks PA-500, PA-2000 Series, PA-4000 Series, and PA-5000 Series firewalls are multi-chip standalone modules that provide network security by enabling enterprises to see and control applications, users, and content using three unique idenification technologies: App-ID, User-ID, and Content-ID. These identification technologies enable enterprises to create business-relevant security policies - safely enabling organizations to adopt new applications.
intModuleCount 1
memAdditionalNotes 08/16/13: added HW 910‐000094‐00O Rev. O with FIPS Kit P/N 920‐000005‐00A (PA‐500‐2GB) and updated security policy.
strFirstValidtionDate 01/30/13 00:00:00
strLabName InfoGard
strValidationYear 2013