Riverbed XD Series Wi-Fi Products

Certificate #3507

Webpage information

Status historical
Historical reason SP 800-56Arev3 transition
Validation dates 08.08.2019
Standard FIPS 140-2
Security level 2
Type Hardware
Embodiment Multi-Chip Stand Alone
Caveat When operated in FIPS mode and with the tamper evident seals installed as indicated in Sections 9 and 10 of the Security Policy
Exceptions
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A
Description Wireless LAN Access Points
Version (Hardware) P/Ns XD2-240-FIPS, XD4-240-FIPS, XA4-240-FIPS, XD2-230-FIPS and XH2-240-FIPS with XE-6000-TBAR (Enclosure Form Factor) and with SKU XE-LABEL-FIPS (Tamper-Evident Seals)
Version (Firmware) AOS-8.6
Vendor Riverbed Technology, Inc.
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, AES-128, AES-256, CAST, RC4, IDEA, Camellia, SEED, HMAC, HMAC-SHA-256
Asymmetric Algorithms
RSA-2048, RSA 2048, ECDH, DH, Diffie-Hellman
Hash functions
SHA-1, SHA-256, SHA-224, SHA-384, SHA-512, MD5
Schemes
Key Exchange
Protocols
SSH, SSHv1, SSHv2, SSL 2.0, TLS
Randomness
DRBG, RNG
Elliptic Curves
P-256
Block cipher modes
CBC, CCM

Security level
Level 2

Standards
FIPS 140-2, FIPS140-2, FIPS 197, FIPS 198-1, FIPS 186-4, FIPS 180-4, SP 800-38A, SP 800-38C, SP 800-90A, SP 800-108, SP 800-135, PKCS1, PKCS#1

File metadata

Subject FIPS 140-2 Security Policy Template
Author Steve Weymann
Creation date D:20190801100433-07'00'
Modification date D:20190801100439-07'00'
Pages 18
Creator Acrobat PDFMaker 17 for Word
Producer Adobe PDF Library 15.0

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 3507,
  "dgst": "736eb54066e30caa",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "KTS#5946",
        "AES#5947",
        "KTS#3919",
        "RSA#3122",
        "CVL#2177",
        "SHS#4698",
        "KBKDF#248",
        "DRBG#2496",
        "AES#5946",
        "HMAC#3919",
        "CVL#2176"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "8.6"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECDH": {
            "ECDH": 1
          }
        },
        "FF": {
          "DH": {
            "DH": 2,
            "Diffie-Hellman": 7
          }
        },
        "RSA": {
          "RSA 2048": 8,
          "RSA-2048": 1
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 8
        },
        "CCM": {
          "CCM": 5
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "SSH": {
          "SSH": 9,
          "SSHv1": 1,
          "SSHv2": 2
        },
        "TLS": {
          "SSL": {
            "SSL 2.0": 1
          },
          "TLS": {
            "TLS": 22
          }
        }
      },
      "crypto_scheme": {
        "KEX": {
          "Key Exchange": 5
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "P-256": 4
        }
      },
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#1": 1,
          "#2176": 2,
          "#2177": 1,
          "#3919": 1,
          "#4": 1,
          "#5946": 2
        }
      },
      "fips_certlike": {
        "Certlike": {
          "AES 1": 2,
          "AES 2": 2,
          "AES Cert. #5946": 2,
          "AES-128": 5,
          "AES-256": 2,
          "Cert # AES": 1,
          "Diffie-Hellman (CVL Cert. #2176": 1,
          "Diffie-Hellman 2048": 4,
          "HMAC Cert. #3919": 2,
          "HMAC SHA-1": 1,
          "HMAC SHA-256": 2,
          "HMAC-SHA-1": 10,
          "HMAC-SHA-256": 4,
          "HMAC-SHA1": 2,
          "PKCS#1": 2,
          "PKCS1": 2,
          "RSA 2048": 8,
          "SHA-1": 3,
          "SHA-224": 1,
          "SHA-256": 8,
          "SHA-384": 1,
          "SHA-512": 1
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 2": 4
        }
      },
      "hash_function": {
        "MD": {
          "MD5": {
            "MD5": 4
          }
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 3
          },
          "SHA2": {
            "SHA-224": 1,
            "SHA-256": 8,
            "SHA-384": 1,
            "SHA-512": 1
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 7
        },
        "RNG": {
          "RNG": 1
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 17,
          "FIPS 180-4": 1,
          "FIPS 186-4": 1,
          "FIPS 197": 2,
          "FIPS 198-1": 1,
          "FIPS140-2": 1
        },
        "NIST": {
          "SP 800-108": 1,
          "SP 800-135": 2,
          "SP 800-38A": 2,
          "SP 800-38C": 1,
          "SP 800-90A": 2
        },
        "PKCS": {
          "PKCS#1": 1,
          "PKCS1": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 10,
            "AES-128": 5,
            "AES-256": 2
          },
          "CAST": {
            "CAST": 1
          },
          "RC": {
            "RC4": 1
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 7,
            "HMAC-SHA-256": 2
          }
        },
        "miscellaneous": {
          "Camellia": {
            "Camellia": 1
          },
          "IDEA": {
            "IDEA": 1
          },
          "SEED": {
            "SEED": 1
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "Steve Weymann",
      "/Company": "Microsoft",
      "/CreationDate": "D:20190801100433-07\u002700\u0027",
      "/Creator": "Acrobat PDFMaker 17 for Word",
      "/ModDate": "D:20190801100439-07\u002700\u0027",
      "/Producer": "Adobe PDF Library 15.0",
      "/SourceModified": "D:20190801170416",
      "/Subject": "FIPS 140-2 Security Policy Template",
      "pdf_file_size_bytes": 840896,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 18
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "d57af0a2022aab197b7914d8610954628e29c954d620d02f785e27392e09ef84",
    "policy_txt_hash": "509b36fa462b61e79a438189a55493d9ed801fb1a62d633a153f38e0cf7c41a6"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When operated in FIPS mode and with the tamper evident seals installed as indicated in Sections 9 and 10 of the Security Policy",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/AugustConsolidated.pdf",
    "date_sunset": null,
    "description": "Wireless LAN Access Points",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Design Assurance: Level 3",
      "Mitigation of Other Attacks: N/A"
    ],
    "fw_versions": "AOS-8.6",
    "historical_reason": "SP 800-56Arev3 transition",
    "hw_versions": "P/Ns XD2-240-FIPS, XD4-240-FIPS, XA4-240-FIPS, XD2-230-FIPS and XH2-240-FIPS with XE-6000-TBAR (Enclosure Form Factor) and with SKU XE-LABEL-FIPS (Tamper-Evident Seals)",
    "level": 2,
    "mentioned_certs": {},
    "module_name": "Riverbed XD Series Wi-Fi Products",
    "module_type": "Hardware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2019-08-08",
        "lab": "UL Verification Services, Inc.",
        "validation_type": "Initial"
      }
    ],
    "vendor": "Riverbed Technology, Inc.",
    "vendor_url": "http://www.riverbed.com"
  }
}