Nokia VPN Appliance

Certificate #834

Webpage information

Status historical
Historical reason RNG SP800-131A Revision 1 Transition
Validation dates 05.09.2007 , 26.09.2007 , 28.05.2009
Standard FIPS 140-2
Security level 2
Type Hardware
Embodiment Multi-Chip Stand Alone
Caveat When operated in FIPS mode
Description The Nokia VPN Applicances are full-featured enterprise systems designed for small to medium enterprises, with Service Provider flexibility and rapid serviceability option in a single rack space. When combined with Check Point VPN-1 these platforms provide reliable, easy to manage distributed security and access.
Version (Hardware) IP260, IP265, IP1220, and IP1260
Version (Firmware) IPSO v3.9 and Check Point VPN-1 NGX (R60) [HFA-03] and IPSO v4.1 and Check Point VPN-1 NGX (R60) [HFA-03]
Vendor Check Point Software Technologies Ltd.
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, Twofish, CAST, DES, TDES, Triple-DES, 3DES, Blowfish, HMAC
Asymmetric Algorithms
Diffie-Hellman, DSA
Hash functions
SHA-1, SHA1, MD5
Schemes
MAC, Key Exchange, Key agreement, Key Agreement
Protocols
SSHv1, SSHv2, SSH, SSL, TLS, TLS v1.0, IKE, VPN
Randomness
PRNG, RNG
Block cipher modes
CBC

Vendor
Microsoft

Security level
Level 2

Standards
FIPS 140-2, FIPS PUB 46-3, FIPS PUB 197, FIPS PUB 198, FIPS PUB 180-1, FIPS PUB 186-2, PKCS #1, RFC 2104, RFC 2404, RFC 2246

File metadata

Title Introduction
Creation date D:20070830140614-04'00'
Modification date D:20070830141105-03'00'
Pages 43
Creator Acrobat PDFMaker 5.0 for Word
Producer Acrobat Distiller 5.0.5 (Windows)

References

Outgoing
  • 314 - historical - Model 330J with JCCOS Applet

Heuristics

No heuristics are available for this certificate.

References

Loading...

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 834,
  "dgst": "5c344ba7044815dd",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "HMAC#207",
        "RNG#201",
        "RSA#215",
        "HMAC#19",
        "AES#226",
        "DSA#204",
        "AES#91",
        "RNG#229",
        "SHS#509",
        "RSA#167",
        "DSA#181",
        "SHS#508",
        "Triple-DES#317",
        "RSA#166",
        "Triple-DES#466",
        "AES#442",
        "HMAC#208",
        "Triple-DES#204",
        "Triple-DES#465",
        "HMAC#203",
        "SHS#500",
        "SHS#291"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "4.1",
        "3.9"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "314"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "314"
        ]
      }
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": [
        "314"
      ]
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "FF": {
          "DH": {
            "Diffie-Hellman": 20
          },
          "DSA": {
            "DSA": 24
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 4
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "IKE": {
          "IKE": 38
        },
        "SSH": {
          "SSH": 32,
          "SSHv1": 21,
          "SSHv2": 31
        },
        "TLS": {
          "SSL": {
            "SSL": 1
          },
          "TLS": {
            "TLS": 23,
            "TLS v1.0": 1
          }
        },
        "VPN": {
          "VPN": 39
        }
      },
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 1,
          "Key agreement": 6
        },
        "KEX": {
          "Key Exchange": 1
        },
        "MAC": {
          "MAC": 1
        }
      },
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#1": 1,
          "#166": 1,
          "#167": 1,
          "#181": 1,
          "#19": 1,
          "#207": 1,
          "#229": 1,
          "#291": 1,
          "#314": 1,
          "#317": 1,
          "#442": 1,
          "#465": 1,
          "#508": 1,
          "#91": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "#203 SHS": 1,
          "#204 HMAC": 1,
          "DES (40": 2,
          "DES1": 1,
          "DSA #181": 1,
          "Diffie-Hellman (160": 1,
          "Diffie-Hellman (320": 1,
          "Diffie-Hellman 512": 1,
          "Diffie-Hellman 768": 1,
          "HMAC #207": 2,
          "HMAC SHA- 1": 1,
          "HMAC SHA-1": 7,
          "HMAC-SHA-1": 1,
          "HMAC-SHA-1 (20": 1,
          "HMAC-SHA-1-96": 2,
          "PKCS #1": 2,
          "RSA #166": 1,
          "SHA- 1": 1,
          "SHA-1": 13,
          "SHA1": 1,
          "SHS #508": 1
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 2": 6
        }
      },
      "hash_function": {
        "MD": {
          "MD5": {
            "MD5": 4
          }
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 13,
            "SHA1": 1
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "PRNG": 17
        },
        "RNG": {
          "RNG": 2
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 37,
          "FIPS PUB 180-1": 1,
          "FIPS PUB 186-2": 1,
          "FIPS PUB 197": 1,
          "FIPS PUB 198": 1,
          "FIPS PUB 46-3": 3
        },
        "PKCS": {
          "PKCS #1": 1
        },
        "RFC": {
          "RFC 2104": 1,
          "RFC 2246": 1,
          "RFC 2404": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 11
          },
          "CAST": {
            "CAST": 2
          },
          "Twofish": {
            "Twofish": 2
          }
        },
        "DES": {
          "3DES": {
            "3DES": 3,
            "TDES": 6,
            "Triple-DES": 6
          },
          "DES": {
            "DES": 23
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 12
          }
        },
        "miscellaneous": {
          "Blowfish": {
            "Blowfish": 2
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Microsoft": {
          "Microsoft": 2
        }
      },
      "vulnerability": {}
    },
    "policy_metadata": {
      "/CreationDate": "D:20070830140614-04\u002700\u0027",
      "/Creator": "Acrobat PDFMaker 5.0 for Word",
      "/ModDate": "D:20070830141105-03\u002700\u0027",
      "/Producer": "Acrobat Distiller 5.0.5 (Windows)",
      "/Title": "Introduction",
      "pdf_file_size_bytes": 1337946,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "http://csrc.nist.gov/cryptval/140-1/140sp/140sp722.pdf",
          "http://www.checkpoint.com/techsupport/"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 43
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "8c03678fb17f2f29c01db9cf12ff395a5eeead0f10369efcfb534da180bd26a4",
    "policy_txt_hash": "d3d1bbb66224c7ecba950824c5e4f810f968a8fd77f1bd75028067b5664cf1ef"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated in FIPS mode",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/140crt834.pdf",
    "date_sunset": null,
    "description": "The Nokia VPN Applicances are full-featured enterprise systems designed for small to medium enterprises, with Service Provider flexibility and rapid serviceability option in a single rack space. When combined with Check Point VPN-1 these platforms provide reliable, easy to manage distributed security and access.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": null,
    "fw_versions": "IPSO v3.9 and Check Point VPN-1 NGX (R60) [HFA-03] and IPSO v4.1 and Check Point VPN-1 NGX (R60) [HFA-03]",
    "historical_reason": "RNG SP800-131A Revision 1 Transition",
    "hw_versions": "IP260, IP265, IP1220, and IP1260",
    "level": 2,
    "mentioned_certs": {},
    "module_name": "Nokia VPN Appliance",
    "module_type": "Hardware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2007-09-05",
        "lab": "CYGNACOM SOLUTIONS INC",
        "validation_type": "Initial"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2007-09-26",
        "lab": "",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2009-05-28",
        "lab": "",
        "validation_type": "Update"
      }
    ],
    "vendor": "Check Point Software Technologies Ltd.",
    "vendor_url": "http://www.checkpoint.com"
  }
}