SAOS 10.11.1

Certificate #5293

Webpage information

Status active
Validation dates 26.05.2026
Sunset date 25-05-2031
Standard FIPS 140-3
Security level 2
Type Hardware
Embodiment MultiChipStand
Caveat When installed, initialized and configured as specified in Section Life-Cycle Assurance of the Security Policy. The tamper evident seals installed as indicated in the Security Policy
Exceptions
  • Roles, services, and authentication: Level 3
  • Operational environment: N/A
  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A
Description The Ciena SAOS 10 MACSec Series of Service Access and Aggregation platforms use MACSec for traffic encryption/decryption. The platforms provide routing/switching functionalities for various use cases including enterprise, mobility, and converged network architectures. With Ethernet, MPLS, IP, and SR capabilities, the product supports emerging networks.
Vendor Ciena Corporation
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES-256, AES-128, AES-192, AES, AES-, CAST, HMAC
Asymmetric Algorithms
RSA 2048, RSA 4096, ECDH, ECDSA, ECC, DH
Hash functions
SHA-1
Schemes
MAC, Key Agreement
Protocols
SSH, SSHv2, TLS v1.2, TLSv1.2, TLS, TLS 1.2, IKE
Randomness
DRBG, RNG, RBG
Elliptic Curves
P-256, P-384, P-521
Block cipher modes
GCM

Trusted Execution Environments
PSP

Security level
Level 2, Level 1

File metadata

Creation date D:20260520144642-04'00'
Modification date D:20260520144642-04'00'
Pages 76
Creator Microsoft® Word for Microsoft 365
Producer Microsoft® Word for Microsoft 365

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 5293,
  "dgst": "1dba9a5bf22d8497",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": []
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "10.11.1"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 3
          },
          "ECDH": {
            "ECDH": 60
          },
          "ECDSA": {
            "ECDSA": 68
          }
        },
        "FF": {
          "DH": {
            "DH": 60
          }
        },
        "RSA": {
          "RSA 2048": 1,
          "RSA 4096": 3
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "GCM": {
          "GCM": 9
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "IKE": {
          "IKE": 1
        },
        "SSH": {
          "SSH": 127,
          "SSHv2": 120
        },
        "TLS": {
          "TLS": {
            "TLS": 7,
            "TLS 1.2": 1,
            "TLS v1.2": 6,
            "TLSv1.2": 198
          }
        }
      },
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 4
        },
        "MAC": {
          "MAC": 4
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "P-256": 46,
          "P-384": 42,
          "P-521": 42
        }
      },
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#1": 1,
          "#4550": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "#AES": 1,
          "AES 4550": 6,
          "AES-128": 2,
          "AES-192": 1,
          "AES-256": 4,
          "AES-GCM (Cert. #4550": 1,
          "DRBG 384": 1,
          "HMAC- SHA-1": 1,
          "HMAC-SHA-1": 6,
          "RSA 2048": 1,
          "RSA 4096": 3,
          "SHA-1": 6,
          "SHA2- 256": 6,
          "SHA2- 384": 1,
          "SHA2- 512": 4,
          "SHA2-256": 9,
          "SHA2-384": 5,
          "SHA2-512": 3,
          "SHA3- 256": 1
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 1,
          "Level 2": 2
        }
      },
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA-1": 6
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 78
        },
        "RNG": {
          "RBG": 2,
          "RNG": 1
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140-3": 10,
          "FIPS 180-4": 4,
          "FIPS 186-5": 10,
          "FIPS 198-1": 4,
          "FIPS186-5": 23
        },
        "NIST": {
          "SP 800-108": 1,
          "SP 800-135": 3,
          "SP 800-38A": 2,
          "SP 800-38B": 1,
          "SP 800-38D": 5,
          "SP 800-38F": 1,
          "SP 800-52": 1,
          "SP 800-56A": 3,
          "SP 800-90A": 1
        },
        "RFC": {
          "RFC 4419": 2,
          "RFC 5288": 1,
          "RFC 7919": 2,
          "RFC7627": 3
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 30,
            "AES-": 9,
            "AES-128": 2,
            "AES-192": 1,
            "AES-256": 4
          },
          "CAST": {
            "CAST": 58
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 17
          }
        }
      },
      "tee_name": {
        "AMD": {
          "PSP": 12
        }
      },
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "policy_metadata": {
      "/CreationDate": "D:20260520144642-04\u002700\u0027",
      "/Creator": "Microsoft\u00ae Word for Microsoft 365",
      "/ModDate": "D:20260520144642-04\u002700\u0027",
      "/Producer": "Microsoft\u00ae Word for Microsoft 365",
      "pdf_file_size_bytes": 2530151,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "https://my.ciena.com/CienaPortal"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 76
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.InternalState",
    "module": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": null,
      "txt_hash": null
    },
    "policy": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": "64adbf475b47b19ce4ef1422b1dd2590faf1e5143513e5310dba6af7a9ee6fd1",
      "txt_hash": "66c6e6830579606bce9c62e842dc2b4a51f6006dcfe3860aaab57a74dfee55fd"
    }
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When installed, initialized and configured as specified in Section Life-Cycle Assurance of the Security Policy. The tamper evident seals installed as indicated in the Security Policy",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/May 2026_030626_0716.pdf",
    "date_sunset": "2031-05-25",
    "description": "The Ciena SAOS 10 MACSec Series of Service Access and Aggregation platforms use MACSec for traffic encryption/decryption. The platforms provide routing/switching functionalities for various use cases including enterprise, mobility, and converged network architectures. With Ethernet, MPLS, IP, and SR capabilities, the product supports emerging networks.",
    "embodiment": "MultiChipStand",
    "exceptions": [
      "Roles, services, and authentication: Level 3",
      "Operational environment: N/A",
      "Non-invasive security: N/A",
      "Mitigation of other attacks: N/A"
    ],
    "fw_versions": null,
    "historical_reason": null,
    "hw_versions": null,
    "level": 2,
    "mentioned_certs": {},
    "module_name": "SAOS 10.11.1",
    "module_type": "Hardware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-3",
    "status": "active",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2026-05-26",
        "lab": "Gossamer Security Solutions",
        "validation_type": "Initial"
      }
    ],
    "vendor": "Ciena Corporation",
    "vendor_url": "http://www.ciena.com/"
  }
}