Nokia VPN Appliance

Certificate #450

Webpage information

Status historical
Historical reason RNG SP800-131A Revision 1 Transition
Validation dates 28.07.2004 , 28.07.2005 , 21.09.2006 , 06.11.2006 , 28.05.2009
Standard FIPS 140-2
Security level 2
Type Hardware
Embodiment Multi-Chip Stand Alone
Caveat None
Description The Nokia IP350, IP355, IP380 and IP385 are full-featured enterprise systems designed for small to medium enterprises, with Service Provider flexibility and rapid serviceability option in a single rack space. When combined with Check Point VPN-1/FW-1, these platforms provide reliable, easy to manage distributed security and access.
Version (Hardware) IP350, IP355, IP380 and IP385
Vendor Check Point Software Technologies Ltd.
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, Twofish, CAST, DES, TDES, Triple-DES, 3DES, Blowfish, HMAC
Asymmetric Algorithms
Diffie-Hellman, DSA
Hash functions
SHA-1, SHA1, MD5
Schemes
MAC, Key Exchange, Key agreement, Key Agreement
Protocols
SSHv1, SSHv2, SSH, SSL, TLS, TLS v1.0, IKE, VPN
Randomness
PRNG, RNG
Block cipher modes
CBC

Vendor
Microsoft

Security level
Level 2

Standards
FIPS 140-2, FIPS PUB 197, FIPS PUB 46-3, FIPS PUB 198, FIPS PUB 180-1, FIPS PUB 186-2, PKCS #1, PKCS#1, RFC 3526, RFC 2104, RFC 2404, RFC 2246

File metadata

Title 1B - Nokia VPN Appliance _Phase II_IP350, IP355, IP380, IP385_ Security Policy v2.0_Oct 27 2006_.doc
Author Ron Tencati_authsec, Inc. for Nokia
Creation date D:20061207120210-05'00'
Modification date D:20061207120237-05'00'
Pages 40
Creator PScript5.dll Version 5.2
Producer Acrobat Distiller 6.0 (Windows)

References

Outgoing
  • 634 - historical - VPN-1
  • 247 - historical - Network Security Services
  • 311 - historical - Cranite Wireless Access Controller

Heuristics

No heuristics are available for this certificate.

References

Loading...

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 450,
  "dgst": "83151157c10d85af",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "RNG#201",
        "Triple-DES#80",
        "SHA-1#325",
        "Triple-DES#234",
        "HMAC-SHA-1#212",
        "RNG#196",
        "HMAC-SHA-1#179",
        "AES#407",
        "HMAC-SHA-1#180",
        "SHA-1#69",
        "RSA#1",
        "HMAC-SHA-1#69",
        "RSA#146",
        "HMAC-SHA-1#56",
        "AES#88",
        "RSA#63",
        "SHA-1#42",
        "RNG#30",
        "SHA-1#211",
        "RSA#149",
        "Triple-DES#132",
        "Triple-DES#235",
        "HMAC-SHA-1#42",
        "Triple-DES#333",
        "Triple-DES#440",
        "DSA#99",
        "HMAC-SHA-1#211",
        "SHA-1#212",
        "SHA-1#210",
        "Triple-DES#41",
        "HMAC-SHA-1#210",
        "SHA-1#474"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "-"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "311",
          "634",
          "247"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "311",
          "634",
          "247"
        ]
      }
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": [
        "634",
        "247",
        "311"
      ]
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "FF": {
          "DH": {
            "Diffie-Hellman": 20
          },
          "DSA": {
            "DSA": 20
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 4
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "IKE": {
          "IKE": 40
        },
        "SSH": {
          "SSH": 32,
          "SSHv1": 21,
          "SSHv2": 31
        },
        "TLS": {
          "SSL": {
            "SSL": 1
          },
          "TLS": {
            "TLS": 23,
            "TLS v1.0": 1
          }
        },
        "VPN": {
          "VPN": 36
        }
      },
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 1,
          "Key agreement": 5
        },
        "KEX": {
          "Key Exchange": 2
        },
        "MAC": {
          "MAC": 1
        }
      },
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#1": 1,
          "#146": 1,
          "#149": 1,
          "#179": 1,
          "#180": 1,
          "#196": 1,
          "#201": 1,
          "#210": 1,
          "#212": 1,
          "#234": 1,
          "#235": 1,
          "#247": 1,
          "#311": 1,
          "#325": 1,
          "#333": 1,
          "#450": 2,
          "#634": 1,
          "#88": 1,
          "#99": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "#132 HMAC": 1,
          "DES (40": 1,
          "DES (56": 1,
          "DES5": 1,
          "DSA #99": 1,
          "HMAC SHA- 1": 1,
          "HMAC SHA-1": 5,
          "HMAC-SHA-1": 1,
          "HMAC-SHA-1 (20": 1,
          "HMAC-SHA-1-96": 2,
          "PKCS #1": 2,
          "PKCS#1": 1,
          "RSA PKCS#1": 1,
          "RSA7": 1,
          "SHA- 1": 1,
          "SHA-1": 13,
          "SHA1": 1,
          "SHS #212": 1
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 2": 6
        }
      },
      "hash_function": {
        "MD": {
          "MD5": {
            "MD5": 2
          }
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 13,
            "SHA1": 1
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "PRNG": 18
        },
        "RNG": {
          "RNG": 1
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 39,
          "FIPS PUB 180-1": 1,
          "FIPS PUB 186-2": 1,
          "FIPS PUB 197": 1,
          "FIPS PUB 198": 1,
          "FIPS PUB 46-3": 2
        },
        "PKCS": {
          "PKCS #1": 1,
          "PKCS#1": 1
        },
        "RFC": {
          "RFC 2104": 1,
          "RFC 2246": 1,
          "RFC 2404": 1,
          "RFC 3526": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 7
          },
          "CAST": {
            "CAST": 1
          },
          "Twofish": {
            "Twofish": 1
          }
        },
        "DES": {
          "3DES": {
            "3DES": 1,
            "TDES": 6,
            "Triple-DES": 3
          },
          "DES": {
            "DES": 13
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 11
          }
        },
        "miscellaneous": {
          "Blowfish": {
            "Blowfish": 1
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Microsoft": {
          "Microsoft": 2
        }
      },
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "Ron Tencati_authsec, Inc. for Nokia",
      "/CreationDate": "D:20061207120210-05\u002700\u0027",
      "/Creator": "PScript5.dll Version 5.2",
      "/ModDate": "D:20061207120237-05\u002700\u0027",
      "/Producer": "Acrobat Distiller 6.0 (Windows)",
      "/Title": "1B - Nokia VPN Appliance _Phase II_IP350, IP355, IP380, IP385_ Security Policy v2.0_Oct 27 2006_.doc",
      "pdf_file_size_bytes": 510352,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 40
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "67b746adabcbf29b24f477361208d60363c4d919212983bd1e6819deb9a48d87",
    "policy_txt_hash": "190b5f029fbe1c4e62e9cb0132371514ffd753727c5996f9fd87db7aa09cad82"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "None",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/140crt450.pdf",
    "date_sunset": null,
    "description": "The Nokia IP350, IP355, IP380 and IP385 are full-featured enterprise systems designed for small to medium enterprises, with Service Provider flexibility and rapid serviceability option in a single rack space. When combined with Check Point VPN-1/FW-1, these platforms provide reliable, easy to manage distributed security and access.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": null,
    "fw_versions": null,
    "historical_reason": "RNG SP800-131A Revision 1 Transition",
    "hw_versions": "IP350, IP355, IP380 and IP385",
    "level": 2,
    "mentioned_certs": {},
    "module_name": "Nokia VPN Appliance",
    "module_type": "Hardware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": "(IPSO v3.7.99 and Check Point NG with Application Intelligence R54) and (IPSO v3.9 and Check Point NG with Application Intelligence R60)",
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2004-07-28",
        "lab": "CYGNACOM SOLUTIONS INC",
        "validation_type": "Initial"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2005-07-28",
        "lab": "",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2006-09-21",
        "lab": "",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2006-11-06",
        "lab": "",
        "validation_type": "Update"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2009-05-28",
        "lab": "",
        "validation_type": "Update"
      }
    ],
    "vendor": "Check Point Software Technologies Ltd.",
    "vendor_url": "http://www.checkpoint.com"
  }
}