This page was not yet optimized for use on mobile devices.
Acme Packet VME
Certificate details
| Certificate ID | #4507 |
|---|---|
| Status | historical |
| Historical reason | Moved to historical list due to sunsetting |
| Validation dates | 04.05.2023 , 25.01.2024 |
| Standard | FIPS 140-2 |
| Security level | 1 |
| Type | Software |
| Embodiment | Multi-Chip Stand Alone |
| Caveat | When installed, initialized and configured as specified in the Security Policy Section 9. |
| Exceptions |
|
| Description | The Acme Packet VME appliance are specifically designed to meet the unique price performance and manageability requirements of the small to medium sized enterprise and remote office/ branch office. Ideal for small site border control and Session Initiation Protocol (SIP) trunking service termination applications, the Acme Packet VME appliance delivers Oracle’s industry leading ESBC capabilities in a small form factor appliance. |
| Tested configurations |
|
| Vendor | Oracle Communications http://www.oracle.com |
| Lab | Acumen Security |
| Algorithms | |
| References | This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates. |
Security policy
Extracted keywords
Symmetric Algorithms
AES, AES-, AES128, AES256, AES-128, AES-192, AES-256, DES, Triple-DES, TDEA, HMAC, HMAC-SHA-256, HMAC-SHA-384, HMAC-SHA-512Asymmetric Algorithms
RSA 2048, ECDH, ECDSA, Diffie-Hellman, DH, DHEHash functions
SHA-1, SHA-256, SHA-384, SHA-512, MD5Schemes
Key Exchange, Key AgreementProtocols
SSH, TLS, TLS 1.2, TLSv1.2, IKE, IKEv2, IKEv1, IPsecRandomness
DRBG, RNGElliptic Curves
P-256, P-384, curve P-256Block cipher modes
ECB, CBC, CTR, GCMTLS cipher suites
TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384, TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256, TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384, TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256, TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384, TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256, TLS_DHE_RSA_WITH_AES_256_GCM_SHA384, TLS_DHE_RSA_WITH_AES_128_GCM_SHA256, TLS_DHE_RSA_WITH_AES_128_CBC_SHA256, TLS_DHE_RSA_WITH_AES_256_CBC_SHA256Security level
Level 1, level 1Certification process
out of scope, Section 9.1 below are not followed, the module will be operating in a non-compliant state that is out of scope of the validationAutomated analysis
Automated inference - use with caution
All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. This applies equally to the Cross-references section below. If you want to know more about how this data is computed and how reliable it is, see our documentation on automated analysis. If you believe any information here is inaccurate or harmful, please submit feedback.No automatically derived data are available in this section.
Cross-references
No references are available for this certificate.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate was first processed.
{
"_type": "sec_certs.sample.fips.FIPSCertificate",
"cert_id": 4507,
"dgst": "a27d23ba80488a93",
"heuristics": {
"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
"algorithms": {
"_type": "Set",
"elements": [
"RSA#A1621",
"RSA#A1620",
"KAS#A1621",
"KAS-SSC#A1621",
"Triple-DES#A1621",
"KAS#A1620",
"ECDSA#A1621",
"SHS#A1620",
"KTS#A1621",
"HMAC#A1621",
"CVL#A1621",
"#A1620",
"HMAC#A1620",
"KTS#A1620",
"KAS-SSC#A1620",
"AES#A1621",
"#A1621",
"SHS#A1621",
"Triple-DES#A1620",
"AES#A1620",
"DRBG#A1621",
"CVL#A1620"
]
},
"cpe_matches": null,
"direct_transitive_cves": null,
"extracted_versions": {
"_type": "Set",
"elements": [
"-"
]
},
"indirect_transitive_cves": null,
"module_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"module_prunned_references": {
"_type": "Set",
"elements": []
},
"policy_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"policy_prunned_references": {
"_type": "Set",
"elements": []
},
"related_cves": null,
"verified_cpe_matches": null
},
"pdf_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
"br1_deviations": 41,
"br1_tables": null,
"is_br1_format": false,
"keywords": {
"asymmetric_crypto": {
"ECC": {
"ECDH": {
"ECDH": 8
},
"ECDSA": {
"ECDSA": 4
}
},
"FF": {
"DH": {
"DH": 8,
"DHE": 1,
"Diffie-Hellman": 19
}
},
"RSA": {
"RSA 2048": 4
}
},
"certification_process": {
"OutOfScope": {
"Section 9.1 below are not followed, the module will be operating in a non-compliant state that is out of scope of the validation": 1,
"out of scope": 1
}
},
"cipher_mode": {
"CBC": {
"CBC": 19
},
"CTR": {
"CTR": 9
},
"ECB": {
"ECB": 2
},
"GCM": {
"GCM": 4
}
},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {
"IKE": {
"IKE": 18,
"IKEv1": 1,
"IKEv2": 3
},
"IPsec": {
"IPsec": 7
},
"SSH": {
"SSH": 36
},
"TLS": {
"TLS": {
"TLS": 45,
"TLS 1.2": 1,
"TLSv1.2": 1
}
}
},
"crypto_scheme": {
"KA": {
"Key Agreement": 2
},
"KEX": {
"Key Exchange": 1
}
},
"device_model": {},
"ecc_curve": {
"NIST": {
"P-256": 5,
"P-384": 8,
"curve P-256": 1
}
},
"eval_facility": {
"Acumen": {
"Acumen Security": 1
}
},
"fips_cert_id": {},
"fips_certlike": {
"Certlike": {
"AES 128": 1,
"AES 128 and 256": 1,
"AES- 256": 4,
"AES-128": 19,
"AES-192": 8,
"AES-256": 8,
"AES128": 6,
"AES256": 6,
"DES 1": 1,
"DES 3": 1,
"HMAC- SHA-256": 1,
"HMAC-SHA-1": 16,
"HMAC-SHA-256": 16,
"HMAC-SHA-384": 8,
"HMAC-SHA-512": 18,
"HMAC-SHA1": 8,
"PKCS#1": 4,
"PKCS1": 2,
"RSA 2048": 4,
"SHA (1": 2,
"SHA(1": 3,
"SHA(256": 2,
"SHA-1": 3,
"SHA-1 2": 1,
"SHA-256": 9,
"SHA-384": 3,
"SHA-512": 4
}
},
"fips_security_level": {
"Level": {
"Level 1": 5,
"level 1": 1
}
},
"hash_function": {
"MD": {
"MD5": {
"MD5": 3
}
},
"SHA": {
"SHA1": {
"SHA-1": 4
},
"SHA2": {
"SHA-256": 9,
"SHA-384": 3,
"SHA-512": 4
}
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"PRNG": {
"DRBG": 24
},
"RNG": {
"RNG": 2
}
},
"side_channel_analysis": {},
"standard_id": {
"FIPS": {
"FIPS 140": 4,
"FIPS 140-2": 27,
"FIPS 1402": 1,
"FIPS PUB 140-2": 9,
"FIPS PUB 180-4": 1,
"FIPS PUB 186-4": 1,
"FIPS PUB 197": 1,
"FIPS PUB 198-1": 1,
"FIPS186-4": 1
},
"NIST": {
"NIST SP 800-131A": 1,
"NIST SP 800-135": 11,
"NIST SP 800-67": 1,
"NIST SP 800-90A": 1,
"SP 800-90A": 9,
"SP 800-90B": 6
},
"PKCS": {
"PKCS#1": 2,
"PKCS1": 1
},
"RFC": {
"RFC 4251": 1,
"RFC 5246": 2,
"RFC 5288": 1
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 22,
"AES-": 4,
"AES-128": 19,
"AES-192": 8,
"AES-256": 8,
"AES128": 6,
"AES256": 6
}
},
"DES": {
"3DES": {
"TDEA": 1,
"Triple-DES": 23
},
"DES": {
"DES": 5
}
},
"constructions": {
"MAC": {
"HMAC": 15,
"HMAC-SHA-256": 8,
"HMAC-SHA-384": 4,
"HMAC-SHA-512": 9
}
}
},
"tee_name": {},
"tls_cipher_suite": {
"TLS": {
"TLS_DHE_RSA_WITH_AES_128_CBC_SHA256": 1,
"TLS_DHE_RSA_WITH_AES_128_GCM_SHA256": 1,
"TLS_DHE_RSA_WITH_AES_256_CBC_SHA256": 1,
"TLS_DHE_RSA_WITH_AES_256_GCM_SHA384": 1,
"TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256": 1,
"TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384": 1,
"TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256": 1,
"TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256": 1,
"TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384": 1,
"TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384": 1
}
},
"vendor": {},
"vulnerability": {}
},
"module_algorithms": {
"_type": "Set",
"elements": [
"RSA#A1621",
"RSA#A1620",
"KAS#A1621",
"KAS-SSC#A1621",
"Triple-DES#A1621",
"KAS#A1620",
"ECDSA#A1621",
"SHS#A1620",
"KTS#A1621",
"HMAC#A1621",
"CVL#A1621",
"HMAC#A1620",
"KTS#A1620",
"KAS-SSC#A1620",
"AES#A1621",
"SHS#A1621",
"Triple-DES#A1620",
"AES#A1620",
"DRBG#A1621",
"CVL#A1620"
]
},
"policy_algorithms": {
"_type": "Set",
"elements": [
"#A1620",
"#A1621"
]
},
"policy_metadata": {
"/Author": "chris brych",
"/CreationDate": "D:20240125110721-08\u002700\u0027",
"/Creator": "Microsoft\u00ae Word for Microsoft 365",
"/ModDate": "D:20240125110721-08\u002700\u0027",
"/Producer": "Microsoft\u00ae Word for Microsoft 365",
"pdf_file_size_bytes": 581539,
"pdf_hyperlinks": {
"_type": "Set",
"elements": [
"https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=34229",
"https://docs.oracle.com/en/industries/communications/session-border-controller/index.html",
"http://csrc.nist.gov/groups/STM/cmvp/index.html",
"https://csrc.nist.gov/projects/cryptographic-algorithm-validation-program/details?validation=34230",
"https://docs.oracle.com/en/industries/communications/session-border-controller/9.0.0/aclireference/acli-reference-guide.pdf"
]
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 34
}
},
"state": {
"_type": "sec_certs.sample.fips.InternalState",
"module": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"source_hash": null,
"txt_hash": null
},
"policy": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": "b5c254b6811ab066cd36533b187292046b4c48982ecdfc57a717cbbfaac68fe3",
"source_hash": "b2490a5a31ffcbf90b36a8dcd99686f9a35766f61f8def7d7c7ab72c7bd51138",
"txt_hash": "b4f886ea5d0ce767047fb04c26ff2c9109811baa05e53d98731f2eb54025dabf"
}
},
"web_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
"caveat": "When installed, initialized and configured as specified in the Security Policy Section 9.",
"certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/May 2023_010623_0642.pdf",
"date_sunset": null,
"description": "The Acme Packet VME appliance are specifically designed to meet the unique price performance and manageability requirements of the small to medium sized enterprise and remote office/ branch office. Ideal for small site border control and Session Initiation Protocol (SIP) trunking service termination applications, the Acme Packet VME appliance delivers Oracle\u2019s industry leading ESBC capabilities in a small form factor appliance.",
"embodiment": "Multi-Chip Stand Alone",
"exceptions": [
"Roles, Services, and Authentication: Level 2",
"Physical Security: N/A",
"Design Assurance: Level 3",
"Mitigation of Other Attacks: N/A"
],
"fw_versions": null,
"historical_reason": "Moved to historical list due to sunsetting",
"hw_versions": null,
"level": 1,
"mentioned_certs": {},
"module_name": "Acme Packet VME",
"module_type": "Software",
"revoked_link": null,
"revoked_reason": null,
"standard": "FIPS 140-2",
"status": "historical",
"sw_versions": "S-Cz9.0",
"tested_conf": [
"Oracle Linux 7 on VMware ESXi 6.7 running on a Oracle Server X8-2 with Intel Xeon Platinum 8260"
],
"validation_history": [
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2023-05-04",
"lab": "Acumen Security",
"validation_type": "Initial"
},
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2024-01-25",
"lab": "Acumen Security",
"validation_type": "Update"
}
],
"vendor": "Oracle Communications",
"vendor_url": "http://www.oracle.com"
}
}