{"_type": "sec_certs.sample.fips.FIPSCertificate", "dgst": "2b8bf3b855a2dbb6", "cert_id": 5063, "web_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.WebData", "module_name": "Infinera G42", "validation_history": [{"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry", "date": "2025-09-22", "validation_type": "Initial", "lab": "Gossamer Security Solutions"}, {"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry", "date": "2025-12-23", "validation_type": "Update", "lab": "Gossamer Security Solutions"}], "vendor_url": "http://www.nokia.com/optical-networks/infinera/", "vendor": "Nokia Corporation", "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/November 2025_181225_1202.pdf", "module_type": "Hardware", "standard": "FIPS 140-3", "status": "active", "level": 2, "caveat": "When installed, initialized and configured as specified in Section Secure Operation in Section 11 of the Security Policy. The tamper evident seals installed as indicated in the Security Policy", "exceptions": ["Roles, services, and authentication: Level 3", "Operational environment: N/A", "Non-invasive security: N/A", "Mitigation of other attacks: N/A"], "embodiment": "Multi-Chip Stand Alone", "description": "The Infinera G42 is a next-generation compact modular transport network elements deployed as part of a point-to-point, point-to-multipoint network for terrestrial and/or subsea applications. The G42 chassis provides multi-service client access (e.g. Ethernet, Optical Transport Network (OTN), etc.) to the Dense Wavelength Division Multiplexing (DWDM) transport bandwidth.", "tested_conf": null, "hw_versions": null, "fw_versions": null, "sw_versions": null, "mentioned_certs": {}, "historical_reason": null, "date_sunset": "2030-09-21", "revoked_reason": null, "revoked_link": null}, "pdf_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData", "keywords": {"fips_cert_id": {"Cert": {"#5": 1}}, "fips_security_level": {"Level": {"Level 2": 2, "Level 1": 1}}, "fips_certlike": {"Certlike": {"HMAC-SHA-1": 18, "SHA2-224": 6, "SHA2-256": 26, "SHA2- 384": 2, "SHA2-512": 85, "SHA-1": 15, "SHA2-384": 10, "SHA2- 512": 2, "SHA2": 1, "RSA 2048": 1, "- PKCS 1": 3, "AES-128": 3, "AES-192": 3, "AES-256": 3, "AES-128/192/256": 1, "DRBG 384": 1, "PKCS 1": 3}}, "vendor": {"NXP": {"NXP": 1}}, "eval_facility": {}, "symmetric_crypto": {"AES_competition": {"AES": {"AES-128": 3, "AES-192": 3, "AES-256": 3, "AES": 42, "AES-": 1}, "CAST": {"CAST": 138}}, "constructions": {"MAC": {"HMAC": 41, "CBC-MAC": 1}}}, "asymmetric_crypto": {"RSA": {"RSA 2048": 1}, "ECC": {"ECDH": {"ECDH": 209}, "ECDSA": {"ECDSA": 280}, "ECC": {"ECC": 3}}, "FF": {"DH": {"Diffie-Hellman": 4, "DHE": 1, "DH": 156}, "DSA": {"DSA": 3}}}, "pq_crypto": {}, "hash_function": {"SHA": {"SHA1": {"SHA-1": 15}, "SHA2": {"SHA2": 1}}, "PBKDF": {"PBKDF": 7}}, "crypto_scheme": {"MAC": {"MAC": 7}}, "crypto_protocol": {"SSH": {"SSH": 360, "SSHv2": 35}, "TLS": {"TLS": {"TLS v1.2": 7, "TLS v1.3": 6, "TLSv1.2": 1, "TLS 1.2": 1, "TLS": 384, "TLS 1.3": 3, "TLSv1.3": 1}}, "IKE": {"IKEv2": 196, "IKE": 1}, "IPsec": {"IPsec": 4}}, "randomness": {"PRNG": {"DRBG": 197}, "RNG": {"RBG": 2}}, "cipher_mode": {"CTR": {"CTR": 1}, "GCM": {"GCM": 41}}, "ecc_curve": {"NIST": {"P-256": 74, "P-384": 60, "P-521": 115, "P-192": 2, "Curve P-521": 1}}, "crypto_engine": {}, "tls_cipher_suite": {}, "crypto_library": {}, "vulnerability": {}, "side_channel_analysis": {}, "device_model": {}, "tee_name": {"AMD": {"PSP": 24}, "IBM": {"SSC": 3, "SE": 1}}, "os_name": {}, "cplc_data": {}, "ic_data_group": {}, "standard_id": {"FIPS": {"FIPS 140-3": 10, "FIPS186-4": 81, "FIPS 186-4": 24, "FIPS 198-1": 11, "FIPS 180-4": 21}, "NIST": {"SP 800-140": 1, "SP 800-38A": 7, "SP 800-38C": 2, "SP 800-38B": 1, "SP 800-38D": 4, "SP 800-90A": 2, "SP 800-56A": 4, "SP 800-135": 6, "SP 800-132": 2, "NIST SP 800-90A": 1}, "PKCS": {"PKCS 1": 3}, "RFC": {"RFC7627": 6, "RFC5288": 1, "RFC8446": 2, "RFC 4106": 1, "RFC7296": 1, "RFC 4419": 2, "RFC 7919": 2, "RFC 3526": 2}, "ISO": {"ISO/IEC 19790": 2}}, "javacard_version": {}, "javacard_api_const": {}, "javacard_packages": {}, "certification_process": {"OutOfScope": {"out of scope": 1, "of the TELs as depicted below and any additional requirement per the site security policy which are out of scope of this Security Policy": 1}}}, "policy_metadata": {"pdf_file_size_bytes": 1787954, "pdf_is_encrypted": false, "pdf_number_of_pages": 147, "/Author": "Hawes, David J. (Fed)", "/Comments": "", "/Company": "", "/CreationDate": "D:20251216093328-05'00'", "/Creator": "Acrobat PDFMaker 25 for Word", "/Keywords": "", "/ModDate": "D:20251216093657-05'00'", "/Producer": "Adobe PDF Library 25.1.201", "/SourceModified": "", "/Subject": "", "/Title": "", "pdf_hyperlinks": {"_type": "Set", "elements": []}}, "module_algorithms": {"_type": "Set", "elements": ["SHA2-256A4959", "TLS v1.2 KDF RFC7627A4958", "AES-CMACA4958", "KDF SNMPA4958", "AES-CTRA4958", "HMAC-SHA2-512A4959", "SHA2-512A4962", "HMAC-SHA-1A4958", "ECDSA SigVer (FIPS186-4)A4962", "PBKDFA4958", "KDF SSHA4958", "HMAC-SHA2-384A4958", "AES-CBCA4959", "AES-ECBC482", "KAS-FFC-SSC Sp800-56Ar3A4958", "ECDSA SigGen (FIPS186-4)A4959", "Safe Primes Key GenerationA4958", "Counter DRBGA4959", "AES-GCMC501", "AES-CCMA4958", "TLS v1.3 KDFA4958", "ECDSA KeyGen (FIPS186-4)A4959", "RSA SigVer (FIPS186-4)A4959", "KAS-ECC-SSC Sp800-56Ar3A4959", "SHA-1A4958", "SHA2-384A4958", "RSA KeyGen (FIPS186-4)A4959", "HMAC-SHA2-256A4959", "RSA SigGen (FIPS186-4)A4959", "KDF IKEv2A4959"]}, "policy_algorithms": {"_type": "Set", "elements": ["#A4955", "#C501", "#A4960", "#A4953", "#A4949", "#A4959", "#A4952", "#A4948", "#A4962", "#A4958", "#C482", "#A4954", "#A4956", "#A4957", "#A4961", "#A3366"]}}, "heuristics": {"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics", "algorithms": {"_type": "Set", "elements": ["SHA2-256A4959", "TLS v1.2 KDF RFC7627A4958", "AES-CMACA4958", "KDF SNMPA4958", "AES-CTRA4958", "HMAC-SHA2-512A4959", "SHA2-512A4962", "HMAC-SHA-1A4958", "ECDSA SigVer (FIPS186-4)A4962", "#A4961", "PBKDFA4958", "KDF SSHA4958", "#A3366", "#A4955", "HMAC-SHA2-384A4958", "AES-CBCA4959", "AES-ECBC482", "KAS-FFC-SSC Sp800-56Ar3A4958", "#A4962", "ECDSA SigGen (FIPS186-4)A4959", "Safe Primes Key GenerationA4958", "#A4958", "Counter DRBGA4959", "AES-CCMA4958", "AES-GCMC501", "#A4956", "TLS v1.3 KDFA4958", "#A4959", "ECDSA KeyGen (FIPS186-4)A4959", "#A4953", "#A4949", "#A4952", "RSA SigVer (FIPS186-4)A4959", "KAS-ECC-SSC Sp800-56Ar3A4959", "#C482", "#A4954", "SHA-1A4958", "#C501", "#A4960", "SHA2-384A4958", "RSA KeyGen (FIPS186-4)A4959", "#A4948", "HMAC-SHA2-256A4959", "RSA SigGen (FIPS186-4)A4959", "KDF IKEv2A4959", "#A4957"]}, "extracted_versions": {"_type": "Set", "elements": ["-"]}, "cpe_matches": null, "verified_cpe_matches": null, "related_cves": null, "policy_prunned_references": {"_type": "Set", "elements": []}, "module_prunned_references": {"_type": "Set", "elements": []}, "policy_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "module_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "direct_transitive_cves": null, "indirect_transitive_cves": null}, "state": {"_type": "sec_certs.sample.fips.InternalState", "module": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": null, "txt_hash": null, "json_hash": null}, "policy": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": "b110f9265f0e3d09d3b5e73e4cb7241191cb80689e08c6ec4ac993e8d8ab4148", "txt_hash": "aaaf4b05ad1b4118f693cb783eb64cf64fcc2d8a8e2f6b339cabb7e3f6111bc3", "json_hash": "3151645e6ddf21b3ef43bd29655d177526d4366634dd3dd4c93fa91c50cc28cb"}}}