This page was not yet optimized for use on mobile devices.
SBC 5400 Session Border Controller
Certificate details
| Certificate ID | #4636 |
|---|---|
| Status | historical |
| Historical reason | Moved to historical list due to sunsetting |
| Validation dates | 12.10.2023 |
| Standard | FIPS 140-2 |
| Security level | 2 |
| Type | Hardware |
| Embodiment | Multi-Chip Stand Alone |
| Caveat | When installed, initialized and configured as specified in Section 3.1 of the Security Policy. When FIPS Kit 550-06508 is installed, initialized and configured as specified in Section 3 of the Security Policy. |
| Exceptions |
|
| Description | The SBC 5400 Session Border Controller is a high-performance aircooled, 2U, IP encryption appliance that provides secure SIP-based communications with robust security, reduced latency, real-time encryption (VOIP signaling and media traffic), media transcoding, flexible SIP session routing, and policy management. |
| Version (Hardware) | SBC 5400 with ASPEED AST2400 and FIPS Kit 550-06508 |
| Version (Firmware) | R7.2.1S0 |
| Vendor | [email protected] /cdn-cgi/l/email-protection |
| Lab | Lightship Security, Inc. |
| References | This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates. |
Security policy
Extracted keywords
Symmetric Algorithms
AES, AES-, DES, Triple-DES, HMACAsymmetric Algorithms
ECDH, ECDSA, ECC, Diffie-Hellman, DH, DSAHash functions
SHA-1, SHA-512, SHA-256, MD5, PBKDF2Schemes
MAC, Key Exchange, Key agreement, Key AgreementProtocols
SSH, SSHv2, TLS, TLS v1.2, TLSv1.2, IKEv1, IKE, IPsecRandomness
DRBG, RNGElliptic Curves
P-224, P-256, P-384, P-521, P-192, B-233, B-283, B-409, B-571, K-233, K-283, K-409, K-571, B-163, K-163Block cipher modes
ECB, CBC, CTR, CFB, GCMTrusted Execution Environments
SSCVendor
MicrosoftSecurity level
Level 2, Level 1, Level 6Side-channel analysis
malfunctionAutomated analysis
Automated inference - use with caution
All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. This applies equally to the Cross-references section below. If you want to know more about how this data is computed and how reliable it is, see our documentation on automated analysis. If you believe any information here is inaccurate or harmful, please submit feedback.No automatically derived data are available in this section.
Cross-references
No references are available for this certificate.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate was first processed.
{
"_type": "sec_certs.sample.fips.FIPSCertificate",
"cert_id": 4636,
"dgst": "9daa98ce3a24c226",
"heuristics": {
"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
"algorithms": {
"_type": "Set",
"elements": [
"ECDSA#C868",
"CVL#C869",
"KAS#A3567",
"AES#5676",
"DSA#A3567",
"CVL#2063",
"SHS#C868",
"RSA#C868",
"KAS-SSC#A3567",
"Triple-DES#2845",
"HMAC#3779",
"KAS#C870",
"KTS#C868",
"CVL#C870",
"AES#C868",
"SHS#4549",
"Triple-DES#C868",
"KAS#C869",
"DRBG#C868",
"HMAC#C868"
]
},
"cpe_matches": null,
"direct_transitive_cves": null,
"extracted_versions": {
"_type": "Set",
"elements": [
"7.2.1"
]
},
"indirect_transitive_cves": null,
"module_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"module_prunned_references": {
"_type": "Set",
"elements": []
},
"policy_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"policy_prunned_references": {
"_type": "Set",
"elements": []
},
"related_cves": null,
"verified_cpe_matches": null
},
"pdf_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
"keywords": {
"asymmetric_crypto": {
"ECC": {
"ECC": {
"ECC": 1
},
"ECDH": {
"ECDH": 11
},
"ECDSA": {
"ECDSA": 10
}
},
"FF": {
"DH": {
"DH": 5,
"Diffie-Hellman": 6
},
"DSA": {
"DSA": 4
}
}
},
"certification_process": {},
"cipher_mode": {
"CBC": {
"CBC": 10
},
"CFB": {
"CFB": 2
},
"CTR": {
"CTR": 3
},
"ECB": {
"ECB": 4
},
"GCM": {
"GCM": 10
}
},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {
"IKE": {
"IKE": 2,
"IKEv1": 1
},
"IPsec": {
"IPsec": 7
},
"SSH": {
"SSH": 49,
"SSHv2": 2
},
"TLS": {
"TLS": {
"TLS": 69,
"TLS v1.2": 2,
"TLSv1.2": 2
}
}
},
"crypto_scheme": {
"KA": {
"Key Agreement": 3,
"Key agreement": 2
},
"KEX": {
"Key Exchange": 2
},
"MAC": {
"MAC": 1
}
},
"device_model": {},
"ecc_curve": {
"NIST": {
"B-163": 2,
"B-233": 4,
"B-283": 4,
"B-409": 4,
"B-571": 4,
"K-163": 2,
"K-233": 5,
"K-283": 4,
"K-409": 4,
"K-571": 4,
"P-192": 4,
"P-224": 12,
"P-256": 12,
"P-384": 12,
"P-521": 12
}
},
"eval_facility": {},
"fips_cert_id": {
"Cert": {
"#1": 1,
"#12": 3,
"#2063": 2,
"#2845": 2,
"#3779": 2,
"#4549": 2,
"#5676": 2
}
},
"fips_certlike": {
"Certlike": {
"AES GCM 128": 1,
"AES GCM IV58": 1,
"AES encrypt KAT61": 1,
"AES-GCM IV60": 1,
"AES25": 1,
"DRBG30": 1,
"HMAC 128": 2,
"HMAC32": 2,
"PKCS #12": 6,
"PKCS#1": 2,
"RSA40": 1,
"SHA-1": 6,
"SHA-133": 1,
"SHA-256": 4,
"SHA-512": 1,
"SHA2- 256": 2,
"SHA2- 512": 2,
"SHA2-1": 1,
"SHA2-224": 5,
"SHA2-256": 3,
"SHA2-384": 5,
"SHA2-512": 3,
"SHS42": 1
}
},
"fips_security_level": {
"Level": {
"Level 1": 1,
"Level 2": 3,
"Level 6": 1
}
},
"hash_function": {
"MD": {
"MD5": {
"MD5": 2
}
},
"PBKDF": {
"PBKDF2": 7
},
"SHA": {
"SHA1": {
"SHA-1": 6
},
"SHA2": {
"SHA-256": 4,
"SHA-512": 1
}
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"PRNG": {
"DRBG": 27
},
"RNG": {
"RNG": 1
}
},
"side_channel_analysis": {
"FI": {
"malfunction": 1
}
},
"standard_id": {
"FIPS": {
"FIPS 140-2": 35,
"FIPS PUB 180-4": 2,
"FIPS PUB 186-4": 3,
"FIPS PUB 197": 3,
"FIPS PUB 198-1": 2
},
"NIST": {
"NIST SP 800-132": 3,
"NIST SP 800-133": 2,
"NIST SP 800-38D": 5
},
"PKCS": {
"PKCS #12": 3,
"PKCS#1": 1
},
"RFC": {
"RFC 5288": 1,
"RFC 5647": 1
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 22,
"AES-": 1
}
},
"DES": {
"3DES": {
"Triple-DES": 12
},
"DES": {
"DES": 3
}
},
"constructions": {
"MAC": {
"HMAC": 11
}
}
},
"tee_name": {
"IBM": {
"SSC": 1
}
},
"tls_cipher_suite": {},
"vendor": {
"Microsoft": {
"Microsoft": 1
}
},
"vulnerability": {}
},
"policy_metadata": {
"/Author": "Darryl Johnson",
"/Comments": "",
"/Company": "Vendor Name (long)",
"/CreationDate": "D:20230622141833-04\u002700\u0027",
"/Creator": "Acrobat PDFMaker 11 for Word",
"/Keywords": "",
"/ModDate": "D:20230622141932-04\u002700\u0027",
"/Producer": "Adobe PDF Library 11.0",
"/SourceModified": "D:20230622181413",
"/Subject": "",
"/Title": "FIPS 140-2 Non-Proprietary Security Policy",
"/_Document Version": "0.2",
"/_DocumentDate": "6/19/2023",
"/_FIPS Security Level": "2",
"/_Firmware Version Number": "Firmware Version: 6.2.2",
"/_Hardware Version Number": "Hardware Version: SBC 5400",
"/_Hardware/Software/Firmware": "Hardware",
"/_New Version": "R7.2.1S0",
"/_Product Name (long)": "SBC 5400 Session Border Controller",
"/_Product Name (short)": "SBC 5400",
"/_Product Version Number": "SBC 5400",
"/_SBC 7000": "SBC 5400",
"/_Vendor Name (long)": "Ribbon Communications, Inc.",
"/_Vendor Name (short)": "Ribbon",
"/_Vendor URL": "http://www.ribboncommunications.com",
"pdf_file_size_bytes": 996456,
"pdf_hyperlinks": {
"_type": "Set",
"elements": [
"http://www.ribboncommunications.com/",
"https://support.sonus.net/display/SBXDOC72/CLI+Reference+Guide",
"https://support.sonus.net/display/SBXDOC72/Enabling+SBC+for+FIPS+140-2+Compliance",
"https://support.sonus.net/display/SBXDOC72/Installing+SBC+5400+Software",
"https://support.sonus.net/display/SBXDOC72/Installing+SBC+5400+Hardware",
"http://csrc.nist.gov/groups/STM/cmvp",
"https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=26387",
"https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=31264",
"https://support.sonus.net/display/SBXDOC72/EMA+User+Guide",
"https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=31266",
"https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=13686",
"https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=24485",
"https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?product=16084",
"https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=28385",
"https://support.sonus.net/display/SBXDOC72/SBC+Core+Documentation",
"https://csrc.nist.gov/Projects/cryptographic-module-validation-program/Validated-Modules/Search",
"mailto:[email protected]",
"https://support.sonus.net/display/SBXDOC62/Upgrading+SBC+Application+in+Standalone+Configuration",
"https://support.sonus.net/display/SBXDOC72/Radius+Authentication+-+Radius+Server",
"https://support.sonus.net/display/SBXDOC72/Radius+Authentication+-+CLI",
"http://www.corsec.com/",
"https://support.sonus.net/display/SBXDOC72/SBC+Core+Troubleshooting+Guide",
"https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=31265",
"https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=27373",
"http://www.sonus.net/"
]
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 47
}
},
"state": {
"_type": "sec_certs.sample.fips.InternalState",
"module": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"source_hash": null,
"txt_hash": null
},
"policy": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"source_hash": "99d83919269767e8b0607ecd8d112bf9caa70911e66e69d7426f63582c5da765",
"txt_hash": "bea8359e4b7458fd12a47e94758851f386599eedf4cb1003e9f98827a0312ff7"
}
},
"web_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
"caveat": "When installed, initialized and configured as specified in Section 3.1 of the Security Policy. When FIPS Kit 550-06508 is installed, initialized and configured as specified in Section 3 of the Security Policy.",
"certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/October 2023_011123_0711.pdf",
"date_sunset": null,
"description": "The SBC 5400 Session Border Controller is a high-performance air\u0002cooled, 2U, IP encryption appliance that provides secure SIP-based communications with robust security, reduced latency, real-time encryption (VOIP signaling and media traffic), media transcoding, flexible SIP session routing, and policy management.",
"embodiment": "Multi-Chip Stand Alone",
"exceptions": [
"Mitigation of Other Attacks: N/A"
],
"fw_versions": "R7.2.1S0",
"historical_reason": "Moved to historical list due to sunsetting",
"hw_versions": "SBC 5400 with ASPEED AST2400 and FIPS Kit 550-06508",
"level": 2,
"mentioned_certs": {},
"module_name": "SBC 5400 Session Border Controller",
"module_type": "Hardware",
"revoked_link": null,
"revoked_reason": null,
"standard": "FIPS 140-2",
"status": "historical",
"sw_versions": null,
"tested_conf": null,
"validation_history": [
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2023-10-12",
"lab": "Lightship Security, Inc.",
"validation_type": "Initial"
}
],
"vendor": "[email\u00a0protected]",
"vendor_url": "/cdn-cgi/l/email-protection"
}
}