This page was not yet optimized for use on mobile
devices.
3e-636M CyberFence Cryptographic Module
Certificate #2210
Webpage information
Security policy
Symmetric Algorithms
AES, HMAC, CMACAsymmetric Algorithms
ECDSA, Diffie-Hellman, DHHash functions
SHA-1, SHA224, SHA256, SHA384, SHA512, MD5Protocols
TLS, IKE, IKEv2, VPNRandomness
DRBG, RBGLibraries
OpenSSLBlock cipher modes
ECB, CTR, CCMSecurity level
Level 2, Level 1Standards
FIPS 140-2, NIST SP 800-131A, PKCS5, RFC 2818File metadata
| Title | Preliminary Design Document |
|---|---|
| Author | Mark Lavoie/Tim Jones |
| Creation date | D:20180319180250-04'00' |
| Modification date | D:20180319180250-04'00' |
| Pages | 16 |
| Creator | Microsoft® Word 2013 |
| Producer | Microsoft® Word 2013 |
Heuristics
No heuristics are available for this certificate.
References
No references are available for this certificate.
Updates Feed
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate was first processed.
Raw data
{
"_type": "sec_certs.sample.fips.FIPSCertificate",
"cert_id": 2210,
"dgst": "4321a844ee760ee6",
"heuristics": {
"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
"algorithms": {
"_type": "Set",
"elements": [
"AES#2060",
"SHS#1807",
"AES#2105",
"HMAC#1253",
"HMAC#1259",
"CVL#169",
"DRBG#822",
"SHS#1801",
"ECDSA#415",
"RSA#1278",
"KTS#2060",
"RSA#1072",
"KTS#1253",
"AES#2078",
"CVL#87",
"CVL#22",
"ECDSA#303"
]
},
"cpe_matches": null,
"direct_transitive_cves": null,
"extracted_versions": {
"_type": "Set",
"elements": [
"5.1",
"1.0"
]
},
"indirect_transitive_cves": null,
"module_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"module_prunned_references": {
"_type": "Set",
"elements": []
},
"policy_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"policy_prunned_references": {
"_type": "Set",
"elements": []
},
"related_cves": null,
"verified_cpe_matches": null
},
"pdf_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
"keywords": {
"asymmetric_crypto": {
"ECC": {
"ECDSA": {
"ECDSA": 15
}
},
"FF": {
"DH": {
"DH": 2,
"Diffie-Hellman": 2
}
}
},
"certification_process": {},
"cipher_mode": {
"CCM": {
"CCM": 1
},
"CTR": {
"CTR": 4
},
"ECB": {
"ECB": 4
}
},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {
"OpenSSL": {
"OpenSSL": 2
}
},
"crypto_protocol": {
"IKE": {
"IKE": 7,
"IKEv2": 3
},
"TLS": {
"TLS": {
"TLS": 27
}
},
"VPN": {
"VPN": 4
}
},
"crypto_scheme": {},
"device_model": {},
"ecc_curve": {},
"eval_facility": {},
"fips_cert_id": {
"Cert": {
"#1072": 1,
"#1253": 2,
"#1259": 1,
"#169": 2,
"#1801": 1,
"#1807": 1,
"#2060": 2,
"#2078": 1,
"#2105": 1,
"#22": 1,
"#303": 1,
"#822": 1,
"#87": 2
}
},
"fips_certlike": {
"Certlike": {
"#2060 SHS": 1,
"#2078 SHS": 1,
"AES #2060": 2,
"AES key (256": 1,
"DRBG #822": 1,
"Diffie-Hellman (CVL Cert. #169": 1,
"Diffie-Hellman (CVL Cert. #87": 1,
"HMAC #1253": 4,
"HMAC #1259": 2,
"HMAC SHA-1": 2,
"PKCS5": 2,
"RSA #1072": 1,
"SHA-1": 6,
"SHA224": 4,
"SHA256": 4,
"SHA384": 4,
"SHA512": 4,
"SHS #1801": 1,
"SHS #1807": 1
}
},
"fips_security_level": {
"Level": {
"Level 1": 1,
"Level 2": 2
}
},
"hash_function": {
"MD": {
"MD5": {
"MD5": 1
}
},
"SHA": {
"SHA1": {
"SHA-1": 6
},
"SHA2": {
"SHA224": 4,
"SHA256": 4,
"SHA384": 4,
"SHA512": 4
}
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"PRNG": {
"DRBG": 11
},
"RNG": {
"RBG": 1
}
},
"side_channel_analysis": {},
"standard_id": {
"FIPS": {
"FIPS 140-2": 21
},
"NIST": {
"NIST SP 800-131A": 2
},
"PKCS": {
"PKCS5": 1
},
"RFC": {
"RFC 2818": 1
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 17
}
},
"constructions": {
"MAC": {
"CMAC": 1,
"HMAC": 8
}
}
},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"policy_metadata": {
"/Author": "Mark Lavoie/Tim Jones",
"/CreationDate": "D:20180319180250-04\u002700\u0027",
"/Creator": "Microsoft\u00ae Word 2013",
"/ModDate": "D:20180319180250-04\u002700\u0027",
"/Producer": "Microsoft\u00ae Word 2013",
"/Title": "Preliminary Design Document",
"pdf_file_size_bytes": 616802,
"pdf_hyperlinks": {
"_type": "Set",
"elements": [
"https://csrc.nist.gov/projects/cryptographic-module-validation-program"
]
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 16
}
},
"state": {
"_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
"module_download_ok": true,
"module_extract_ok": true,
"policy_convert_ok": true,
"policy_download_ok": true,
"policy_extract_ok": true,
"policy_json_hash": null,
"policy_pdf_hash": "0a6796e9f9dc1a0a9690bcbf72fbf2bddfe308e632cfc638c6fc12fd8a77adce",
"policy_txt_hash": "2d15e604eb6c2b6e2295f18881a87fd06eb3fa66a4c3c21348f76acfe6f056f5"
},
"web_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
"caveat": "When operated in FIPS mode",
"certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/FIPS140ConsolidatedCertList0043.pdf",
"date_sunset": null,
"description": "3e-636M CyberFence module is a high speed information assurance device that combines together a number of different capabilities to create a tailored cyber defense. Acting as an IPsec client or gateway, the module authenticates the IPsec peer using IKEv2 negotiation. It provides further data integrity and confidentiality using the ESP mode of the IPsec. AES with 128/192/256 bits key is used for network data encryption while SHS, CCM or GCM is used for data integrity. The module also implements access control, 802.1X port authentication and deep data packet inspection functions.",
"embodiment": "Multi-Chip Embedded",
"exceptions": [
"Roles, Services, and Authentication: Level 3",
"Design Assurance: Level 3",
"Mitigation of Other Attacks: N/A"
],
"fw_versions": "5.1",
"historical_reason": "186-2 transition",
"hw_versions": "1.0",
"level": 2,
"mentioned_certs": {},
"module_name": "3e-636M CyberFence Cryptographic Module",
"module_type": "Hardware",
"revoked_link": null,
"revoked_reason": null,
"standard": "FIPS 140-2",
"status": "historical",
"sw_versions": null,
"tested_conf": null,
"validation_history": [
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2014-07-11",
"lab": "CYGNACOM SOLUTIONS INC",
"validation_type": "Initial"
},
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2016-03-29",
"lab": "CYGNACOM SOLUTIONS INC",
"validation_type": "Update"
},
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2016-04-14",
"lab": "CYGNACOM SOLUTIONS INC",
"validation_type": "Update"
},
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2018-03-20",
"lab": "CYGNACOM SOLUTIONS INC",
"validation_type": "Update"
}
],
"vendor": "3e Technologies International, Inc.",
"vendor_url": "http://www.ultra-3eti.com"
}
}