LX-4000T Series Console Servers

Certificate #2673

Webpage information

Status historical
Historical reason Moved to historical list due to sunsetting
Validation dates 08.07.2016
Standard FIPS 140-2
Security level 2
Type Hardware
Embodiment Multi-Chip Stand Alone
Caveat When operated in FIPS mode and with the tamper evident seals installed as indicated in the Security Policy. The protocols IPsec, SNMP, SSH and TLS shall not be used when operated in FIPS mode
Exceptions
  • Mitigation of Other Attacks: N/A
Description The LX-4000T Series Console Servers are a key component of MRV's Out-of-Band Network solution. Out-of-Band Networks provide secure remote service port access and remote power control to devices in an organization's networks and infrastructures. This nearly eliminates the need for physical presence at a device to correct problems or manage its everyday operation. MRV's Out-of-Band Network solution includes console servers, terminal servers, device servers, remote power control and management system, making the LX Series an ideal choice for secure remote access.
Version (Hardware) 600-R3265 RevB through 600-R3288 RevB (inclusive), 600-R3265 RevC through 600-R3288 RevC (inclusive), 600-R3265 RevD through 600-R3288 RevD (inclusive) and 600-R3265 RevE through 600-R3288 RevE (inclusive)
Version (Firmware) LinuxITO Version: 6.1.0 and PPCiboot Version: 5.3.9
Vendor MRV Communications Inc.
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, AES-256, DES, Triple-DES, HMAC
Asymmetric Algorithms
ECDSA, Diffie-Hellman, DSA
Hash functions
SHA-1, SHA-256, SHA-512, SHA-2, MD5
Schemes
Key exchange
Protocols
SSHv1, SSHv2, SSH, TLS v1.1, TLS v1.2, TLS, IKE, IKEv1, IKEv2
Randomness
DRBG, RNG
Elliptic Curves
P-256
Block cipher modes
ECB, CBC, CTR, OFB

Security level
Level 2

Standards
FIPS 140-2, FIPS PUB 140-2

File metadata

Title FIPS 140 Validation Agreement
Author Ed Morris
Creation date D:20160705130501-04'00'
Modification date D:20160705130513-04'00'
Pages 32
Creator Acrobat PDFMaker 11 for Word
Producer Adobe PDF Library 11.0

References

Outgoing
  • 2093 - historical - Cisco Catalyst 3560-C [1], 3560-X [2] and 3750-X [3] Switches
  • 2092 - historical - Samsung FIPS BC for Mobile Phone and Tablet
  • 808 - historical - CipherOptics SG100 and CipherOptics SG1002

Heuristics

No heuristics are available for this certificate.

References

Loading...

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 2673,
  "dgst": "12ef84e911f067ff",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "AES#3765",
        "DRBG#1035",
        "DSA#1046",
        "SHS#3134"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "5.3.9",
        "6.1.0"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "2092",
          "2093",
          "808"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "2092",
          "2093",
          "1985",
          "808"
        ]
      }
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": [
        "2092",
        "2093",
        "808"
      ]
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECDSA": {
            "ECDSA": 11
          }
        },
        "FF": {
          "DH": {
            "Diffie-Hellman": 1
          },
          "DSA": {
            "DSA": 10
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 3
        },
        "CTR": {
          "CTR": 2
        },
        "ECB": {
          "ECB": 1
        },
        "OFB": {
          "OFB": 1
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "IKE": {
          "IKE": 3,
          "IKEv1": 1,
          "IKEv2": 1
        },
        "SSH": {
          "SSH": 2,
          "SSHv1": 1,
          "SSHv2": 1
        },
        "TLS": {
          "TLS": {
            "TLS": 2,
            "TLS v1.1": 1,
            "TLS v1.2": 1
          }
        }
      },
      "crypto_scheme": {
        "KEX": {
          "Key exchange": 1
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "P-256": 4
        }
      },
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#1035": 1,
          "#1046": 1,
          "#2092": 2,
          "#2093": 2,
          "#2463": 2,
          "#2464": 2,
          "#3133": 2,
          "#3134": 1,
          "#3764": 2,
          "#3765": 1,
          "#808": 2
        }
      },
      "fips_certlike": {
        "Certlike": {
          "#1046 DRBG": 1,
          "AES CBC 128/192/256 #3764": 1,
          "AES Cert #3764": 1,
          "AES-256": 1,
          "DSA2048": 1,
          "HMAC Cert. #2463": 2,
          "HMAC Cert. #2464": 2,
          "HMAC SHA-1": 1,
          "HMAC SHA-1, 256": 1,
          "HMAC-SHA1": 4,
          "HMAC-SHA224": 2,
          "HMAC-SHA256": 2,
          "SHA Cert. #3133": 1,
          "SHA-1": 3,
          "SHA-1, 256": 2,
          "SHA-2": 2,
          "SHA-256": 1,
          "SHA-512": 3
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 2": 4
        }
      },
      "hash_function": {
        "MD": {
          "MD5": {
            "MD5": 1
          }
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 5
          },
          "SHA2": {
            "SHA-2": 2,
            "SHA-256": 1,
            "SHA-512": 3
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 22
        },
        "RNG": {
          "RNG": 2
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 116,
          "FIPS PUB 140-2": 3
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 5,
            "AES-256": 1
          }
        },
        "DES": {
          "3DES": {
            "Triple-DES": 6
          },
          "DES": {
            "DES": 1
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 5
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "Ed Morris",
      "/Company": "iTouch Communications",
      "/CreationDate": "D:20160705130501-04\u002700\u0027",
      "/Creator": "Acrobat PDFMaker 11 for Word",
      "/ModDate": "D:20160705130513-04\u002700\u0027",
      "/Producer": "Adobe PDF Library 11.0",
      "/SourceModified": "D:20160705170445",
      "/Title": "FIPS 140 Validation Agreement",
      "pdf_file_size_bytes": 646603,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 32
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "9486127e8a53804ca55f2b32a67aedb0d9da4b71de73044cc10466c92ed77c88",
    "policy_txt_hash": "fbdf48ffe10643dd29d386fada8591e545adaea229863f5fb191605cd4c4ce86"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated in FIPS mode and with the tamper evident seals installed as indicated in the Security Policy. The protocols IPsec, SNMP, SSH and TLS shall not be used when operated in FIPS mode",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/FIPS140ConsolidatedCertJuly2016.pdf",
    "date_sunset": null,
    "description": "The LX-4000T Series Console Servers are a key component of MRV\u0027s Out-of-Band Network solution. Out-of-Band Networks provide secure remote service port access and remote power control to devices in an organization\u0027s networks and infrastructures. This nearly eliminates the need for physical presence at a device to correct problems or manage its everyday operation. MRV\u0027s Out-of-Band Network solution includes console servers, terminal servers, device servers, remote power control and management system, making the LX Series an ideal choice for secure remote access.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Mitigation of Other Attacks: N/A"
    ],
    "fw_versions": "LinuxITO Version: 6.1.0 and PPCiboot Version: 5.3.9",
    "historical_reason": "Moved to historical list due to sunsetting",
    "hw_versions": "600-R3265 RevB through 600-R3288 RevB (inclusive), 600-R3265 RevC through 600-R3288 RevC (inclusive), 600-R3265 RevD through 600-R3288 RevD (inclusive) and 600-R3265 RevE through 600-R3288 RevE (inclusive)",
    "level": 2,
    "mentioned_certs": {},
    "module_name": "LX-4000T Series Console Servers",
    "module_type": "Hardware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2016-07-08",
        "lab": "Leidos Accredited Testing \u0026 Evaluation (AT\u0026E) Lab",
        "validation_type": "Initial"
      }
    ],
    "vendor": "MRV Communications Inc.",
    "vendor_url": "http://www.mrv.com"
  }
}