This page was not yet optimized for use on mobile
devices.
SSG 320M and SSG 350M
Certificate #1172
Webpage information
Security policy
Symmetric Algorithms
AES, DES, Triple-DES, HMAC, HMAC-SHA-256Asymmetric Algorithms
ECDSA, Diffie-Hellman, DH, DSAHash functions
SHA-1, SHA-256, MD5Schemes
Key AgreementProtocols
SSH, SSHv2, SSHv1, SSL, IKE, IPsec, VPNRandomness
PRNG, RNGBlock cipher modes
CBCSecurity level
Level 2Standards
FIPS 140-2, NIST SP 800-57, PKCS #1File metadata
| Title | Microsoft Word - Security_Policy_SSG-300_ScreenOS_6_2.doc |
|---|---|
| Author | thuntley |
| Creation date | D:20100106141433-08'00' |
| Modification date | D:20100106141433-08'00' |
| Pages | 18 |
| Creator | PScript5.dll Version 5.2.2 |
| Producer | Acrobat Distiller 8.1.0 (Windows) |
Heuristics
No heuristics are available for this certificate.
References
No references are available for this certificate.
Updates Feed
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate was first processed.
Raw data
{
"_type": "sec_certs.sample.fips.FIPSCertificate",
"cert_id": 1172,
"dgst": "02ede7e8caf71df4",
"heuristics": {
"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
"algorithms": {
"_type": "Set",
"elements": [
"RNG#498",
"ECDSA#105",
"AES#868",
"SHS#862",
"DSA#316",
"RSA#419",
"HMAC#484",
"Triple-DES#713"
]
},
"cpe_matches": null,
"direct_transitive_cves": null,
"extracted_versions": {
"_type": "Set",
"elements": [
"6.2.0"
]
},
"indirect_transitive_cves": null,
"module_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"module_prunned_references": {
"_type": "Set",
"elements": []
},
"policy_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"policy_prunned_references": {
"_type": "Set",
"elements": []
},
"related_cves": null,
"verified_cpe_matches": null
},
"pdf_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
"keywords": {
"asymmetric_crypto": {
"ECC": {
"ECDSA": {
"ECDSA": 3
}
},
"FF": {
"DH": {
"DH": 7,
"Diffie-Hellman": 3
},
"DSA": {
"DSA": 17
}
}
},
"certification_process": {},
"cipher_mode": {
"CBC": {
"CBC": 4
}
},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {
"IKE": {
"IKE": 30
},
"IPsec": {
"IPsec": 1
},
"SSH": {
"SSH": 26,
"SSHv1": 1,
"SSHv2": 1
},
"TLS": {
"SSL": {
"SSL": 2
}
},
"VPN": {
"VPN": 15
}
},
"crypto_scheme": {
"KA": {
"Key Agreement": 1
}
},
"device_model": {},
"ecc_curve": {},
"eval_facility": {},
"fips_cert_id": {
"Cert": {
"#1": 1
}
},
"fips_certlike": {
"Certlike": {
"HMAC SHA-1": 16,
"HMAC SHA-256": 1,
"HMAC-SHA-1": 2,
"HMAC-SHA-256": 2,
"PKCS #1": 2,
"SHA-1": 18,
"SHA-256": 3
}
},
"fips_security_level": {
"Level": {
"Level 2": 1
}
},
"hash_function": {
"MD": {
"MD5": {
"MD5": 2
}
},
"SHA": {
"SHA1": {
"SHA-1": 18
},
"SHA2": {
"SHA-256": 3
}
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"PRNG": {
"PRNG": 6
},
"RNG": {
"RNG": 11
}
},
"side_channel_analysis": {},
"standard_id": {
"FIPS": {
"FIPS 140-2": 5
},
"NIST": {
"NIST SP 800-57": 1
},
"PKCS": {
"PKCS #1": 1
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 11
}
},
"DES": {
"3DES": {
"Triple-DES": 9
},
"DES": {
"DES": 3
}
},
"constructions": {
"MAC": {
"HMAC": 17,
"HMAC-SHA-256": 1
}
}
},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"policy_metadata": {
"/Author": "thuntley",
"/CreationDate": "D:20100106141433-08\u002700\u0027",
"/Creator": "PScript5.dll Version 5.2.2",
"/ModDate": "D:20100106141433-08\u002700\u0027",
"/Producer": "Acrobat Distiller 8.1.0 (Windows)",
"/Title": "Microsoft Word - Security_Policy_SSG-300_ScreenOS_6_2.doc",
"pdf_file_size_bytes": 144481,
"pdf_hyperlinks": {
"_type": "Set",
"elements": []
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 18
}
},
"state": {
"_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
"module_download_ok": true,
"module_extract_ok": true,
"policy_convert_ok": true,
"policy_download_ok": true,
"policy_extract_ok": true,
"policy_json_hash": null,
"policy_pdf_hash": "f6efd0bccd65204c24efb3b103245f954157d244d0be8d00399d38df414ffb5d",
"policy_txt_hash": "658665bdc510f76028025b195c102016c6040e955a8db2e92ebc3dade3dc34d4"
},
"web_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
"caveat": "When operated in FIPS mode",
"certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/140crt1172.pdf",
"date_sunset": null,
"description": "The SSG 300 Series comprises high-performance security platforms that help businesses stop internal and external attacks, prevent unauthorized access, and achieve regulatory compliance. The SSG 350M provides 500 Mbps of stateful firewall performance and 225 Mbps of IPSec VPN performance, while the SSG 320M provides 400 Mbps of stateful firewall performance and 175 Mbps of IPSec VPN performance.",
"embodiment": "Multi-Chip Stand Alone",
"exceptions": [
"Cryptographic Module Specification: Level 3",
"Cryptographic Module Ports and Interfaces: Level 3",
"Roles, Services, and Authentication: Level 3",
"Cryptographic Key Management: Level 3",
"Design Assurance: Level 3"
],
"fw_versions": "ScreenOS 6.2.0r3",
"historical_reason": "RNG SP800-131A Revision 1 Transition",
"hw_versions": "P/Ns SSG-320M (SSG 320M) and SSG-350M (SSG 350M)",
"level": 2,
"mentioned_certs": {},
"module_name": "SSG 320M and SSG 350M",
"module_type": "Hardware",
"revoked_link": null,
"revoked_reason": null,
"standard": "FIPS 140-2",
"status": "historical",
"sw_versions": null,
"tested_conf": null,
"validation_history": [
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2009-08-18",
"lab": "UL Verification Services, Inc.",
"validation_type": "Initial"
},
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2010-01-28",
"lab": "",
"validation_type": "Update"
},
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2013-12-11",
"lab": "",
"validation_type": "Update"
}
],
"vendor": "Juniper Networks, Inc.",
"vendor_url": "http://www.juniper.net"
}
}