SBC 5400 Session Border Controller

Certificate #4636

Webpage information

Status active
Validation dates 12.10.2023
Sunset date 06-09-2026
Standard FIPS 140-2
Security level 2
Type Hardware
Embodiment Multi-Chip Stand Alone
Caveat When installed, initialized and configured as specified in Section 3.1 of the Security Policy. When FIPS Kit 550-06508 is installed, initialized and configured as specified in Section 3 of the Security Policy.
Exceptions
  • Mitigation of Other Attacks: N/A
Description The SBC 5400 Session Border Controller is a high-performance aircooled, 2U, IP encryption appliance that provides secure SIP-based communications with robust security, reduced latency, real-time encryption (VOIP signaling and media traffic), media transcoding, flexible SIP session routing, and policy management.
Version (Hardware) SBC 5400 with ASPEED AST2400 and FIPS Kit 550-06508
Version (Firmware) R7.2.1S0
Vendor [email protected]
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, AES-, DES, Triple-DES, HMAC
Asymmetric Algorithms
ECDH, ECDSA, ECC, Diffie-Hellman, DH, DSA
Hash functions
SHA-1, SHA-512, SHA-256, MD5, PBKDF2
Schemes
MAC, Key Exchange, Key agreement, Key Agreement
Protocols
SSH, SSHv2, TLS, TLS v1.2, TLSv1.2, IKEv1, IKE, IPsec
Randomness
DRBG, RNG
Elliptic Curves
P-224, P-256, P-384, P-521, P-192, B-233, B-283, B-409, B-571, K-233, K-283, K-409, K-571, B-163, K-163
Block cipher modes
ECB, CBC, CTR, CFB, GCM

Trusted Execution Environments
SSC
Vendor
Microsoft

Security level
Level 2, Level 1, Level 6
Side-channel analysis
malfunction

Standards
FIPS 140-2, FIPS PUB 197, FIPS PUB 186-4, FIPS PUB 198-1, FIPS PUB 180-4, NIST SP 800-38D, NIST SP 800-133, NIST SP 800-132, PKCS#1, PKCS #12, RFC 5288, RFC 5647

File metadata

Title FIPS 140-2 Non-Proprietary Security Policy
Author Darryl Johnson
Creation date D:20230622141833-04'00'
Modification date D:20230622141932-04'00'
Pages 47
Creator Acrobat PDFMaker 11 for Word
Producer Adobe PDF Library 11.0

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 4636,
  "dgst": "9daa98ce3a24c226",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "AES#5676",
        "RSA#C868",
        "CVL#C870",
        "Triple-DES#C868",
        "KTS#C868",
        "HMAC#3779",
        "HMAC#C868",
        "DSA#A3567",
        "KAS#C870",
        "KAS#A3567",
        "SHS#C868",
        "CVL#C869",
        "KAS-SSC#A3567",
        "CVL#2063",
        "KAS#C869",
        "SHS#4549",
        "AES#C868",
        "DRBG#C868",
        "ECDSA#C868",
        "Triple-DES#2845"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "7.2.1"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 1
          },
          "ECDH": {
            "ECDH": 11
          },
          "ECDSA": {
            "ECDSA": 10
          }
        },
        "FF": {
          "DH": {
            "DH": 5,
            "Diffie-Hellman": 6
          },
          "DSA": {
            "DSA": 4
          }
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 10
        },
        "CFB": {
          "CFB": 2
        },
        "CTR": {
          "CTR": 3
        },
        "ECB": {
          "ECB": 4
        },
        "GCM": {
          "GCM": 10
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "IKE": {
          "IKE": 2,
          "IKEv1": 1
        },
        "IPsec": {
          "IPsec": 7
        },
        "SSH": {
          "SSH": 49,
          "SSHv2": 2
        },
        "TLS": {
          "TLS": {
            "TLS": 69,
            "TLS v1.2": 2,
            "TLSv1.2": 2
          }
        }
      },
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 3,
          "Key agreement": 2
        },
        "KEX": {
          "Key Exchange": 2
        },
        "MAC": {
          "MAC": 1
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "B-163": 2,
          "B-233": 4,
          "B-283": 4,
          "B-409": 4,
          "B-571": 4,
          "K-163": 2,
          "K-233": 5,
          "K-283": 4,
          "K-409": 4,
          "K-571": 4,
          "P-192": 4,
          "P-224": 12,
          "P-256": 12,
          "P-384": 12,
          "P-521": 12
        }
      },
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#1": 1,
          "#12": 3,
          "#2063": 2,
          "#2845": 2,
          "#3779": 2,
          "#4549": 2,
          "#5676": 2
        }
      },
      "fips_certlike": {
        "Certlike": {
          "AES GCM 128": 1,
          "AES GCM IV58": 1,
          "AES encrypt KAT61": 1,
          "AES-GCM IV60": 1,
          "AES25": 1,
          "DRBG30": 1,
          "HMAC 128": 2,
          "HMAC32": 2,
          "PKCS #12": 6,
          "PKCS#1": 2,
          "RSA40": 1,
          "SHA-1": 6,
          "SHA-133": 1,
          "SHA-256": 4,
          "SHA-512": 1,
          "SHA2- 256": 2,
          "SHA2- 512": 2,
          "SHA2-1": 1,
          "SHA2-224": 5,
          "SHA2-256": 3,
          "SHA2-384": 5,
          "SHA2-512": 3,
          "SHS42": 1
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 1,
          "Level 2": 3,
          "Level 6": 1
        }
      },
      "hash_function": {
        "MD": {
          "MD5": {
            "MD5": 2
          }
        },
        "PBKDF": {
          "PBKDF2": 7
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 6
          },
          "SHA2": {
            "SHA-256": 4,
            "SHA-512": 1
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 27
        },
        "RNG": {
          "RNG": 1
        }
      },
      "side_channel_analysis": {
        "FI": {
          "malfunction": 1
        }
      },
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 35,
          "FIPS PUB 180-4": 2,
          "FIPS PUB 186-4": 3,
          "FIPS PUB 197": 3,
          "FIPS PUB 198-1": 2
        },
        "NIST": {
          "NIST SP 800-132": 3,
          "NIST SP 800-133": 2,
          "NIST SP 800-38D": 5
        },
        "PKCS": {
          "PKCS #12": 3,
          "PKCS#1": 1
        },
        "RFC": {
          "RFC 5288": 1,
          "RFC 5647": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 22,
            "AES-": 1
          }
        },
        "DES": {
          "3DES": {
            "Triple-DES": 12
          },
          "DES": {
            "DES": 3
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 11
          }
        }
      },
      "tee_name": {
        "IBM": {
          "SSC": 1
        }
      },
      "tls_cipher_suite": {},
      "vendor": {
        "Microsoft": {
          "Microsoft": 1
        }
      },
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "Darryl Johnson",
      "/Comments": "",
      "/Company": "Vendor Name (long)",
      "/CreationDate": "D:20230622141833-04\u002700\u0027",
      "/Creator": "Acrobat PDFMaker 11 for Word",
      "/Keywords": "",
      "/ModDate": "D:20230622141932-04\u002700\u0027",
      "/Producer": "Adobe PDF Library 11.0",
      "/SourceModified": "D:20230622181413",
      "/Subject": "",
      "/Title": "FIPS 140-2 Non-Proprietary Security Policy",
      "/_Document Version": "0.2",
      "/_DocumentDate": "6/19/2023",
      "/_FIPS Security Level": "2",
      "/_Firmware Version Number": "Firmware Version: 6.2.2",
      "/_Hardware Version Number": "Hardware Version: SBC 5400",
      "/_Hardware/Software/Firmware": "Hardware",
      "/_New Version": "R7.2.1S0",
      "/_Product Name (long)": "SBC 5400 Session Border Controller",
      "/_Product Name (short)": "SBC 5400",
      "/_Product Version Number": "SBC 5400",
      "/_SBC 7000": "SBC 5400",
      "/_Vendor Name (long)": "Ribbon Communications, Inc.",
      "/_Vendor Name (short)": "Ribbon",
      "/_Vendor URL": "http://www.ribboncommunications.com",
      "pdf_file_size_bytes": 996456,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=24485",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=31265",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=26387",
          "https://support.sonus.net/display/SBXDOC62/Upgrading+SBC+Application+in+Standalone+Configuration",
          "http://www.sonus.net/",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=27373",
          "http://csrc.nist.gov/groups/STM/cmvp",
          "https://support.sonus.net/display/SBXDOC72/EMA+User+Guide",
          "https://csrc.nist.gov/Projects/cryptographic-module-validation-program/Validated-Modules/Search",
          "https://support.sonus.net/display/SBXDOC72/Installing+SBC+5400+Hardware",
          "http://www.ribboncommunications.com/",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?product=16084",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=31266",
          "https://support.sonus.net/display/SBXDOC72/Enabling+SBC+for+FIPS+140-2+Compliance",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=28385",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=31264",
          "mailto:[email protected]",
          "https://support.sonus.net/display/SBXDOC72/SBC+Core+Documentation",
          "https://support.sonus.net/display/SBXDOC72/Installing+SBC+5400+Software",
          "https://support.sonus.net/display/SBXDOC72/Radius+Authentication+-+Radius+Server",
          "https://support.sonus.net/display/SBXDOC72/Radius+Authentication+-+CLI",
          "http://www.corsec.com/",
          "https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=13686",
          "https://support.sonus.net/display/SBXDOC72/CLI+Reference+Guide",
          "https://support.sonus.net/display/SBXDOC72/SBC+Core+Troubleshooting+Guide"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 47
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "99d83919269767e8b0607ecd8d112bf9caa70911e66e69d7426f63582c5da765",
    "policy_txt_hash": "bea8359e4b7458fd12a47e94758851f386599eedf4cb1003e9f98827a0312ff7"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When installed, initialized and configured as specified in Section 3.1 of the Security Policy. When FIPS Kit 550-06508 is installed, initialized and configured as specified in Section 3 of the Security Policy.",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/October 2023_011123_0711.pdf",
    "date_sunset": "2026-09-06",
    "description": "The SBC 5400 Session Border Controller is a high-performance air\u0002cooled, 2U, IP encryption appliance that provides secure SIP-based communications with robust security, reduced latency, real-time encryption (VOIP signaling and media traffic), media transcoding, flexible SIP session routing, and policy management.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Mitigation of Other Attacks: N/A"
    ],
    "fw_versions": "R7.2.1S0",
    "historical_reason": null,
    "hw_versions": "SBC 5400 with ASPEED AST2400 and FIPS Kit 550-06508",
    "level": 2,
    "mentioned_certs": {},
    "module_name": "SBC 5400 Session Border Controller",
    "module_type": "Hardware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "active",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2023-10-12",
        "lab": "Lightship Security, Inc.",
        "validation_type": "Initial"
      }
    ],
    "vendor": "[email\u00a0protected]",
    "vendor_url": "/cdn-cgi/l/email-protection"
  }
}