IBM Security Network Intrusion Prevention System Version 4.6.2

Certificate #2578

Webpage information

Status historical
Historical reason Moved to historical list due to sunsetting
Validation dates 07.03.2016
Standard FIPS 140-2
Security level 2
Type Hardware
Embodiment Multi-Chip Stand Alone
Caveat When installed, initialized and configured as specified in the Security Policy Section 3. The module generates cryptographic keys whose strengths are modified by available entropy
Exceptions
  • Mitigation of Other Attacks: N/A
Description The Network Intrusion Prevention System (NIPS) automatically blocks malicious attacks while preserving network bandwidth and availability. The appliances are purpose-built, Layer 2 network security appliances that you can deploy either at the gateway or the network to block intrusion attempts, denial of service (DoS) attacks, malicious code, backdoors, spyware, peer-to-peer applications, and a growing list of threats without requiring extensive network reconfiguration.
Version (Hardware) GX4004, GX5008C, GX5008SFP, GX5208C, GX5208SFP, GX7412 and GX7800 with Tamper Evident Label Kit: 00VM255
Version (Firmware) 4.6.2
Vendor IBM Security
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES, Triple-DES, HMAC, HMAC-SHA-512, CMAC
Asymmetric Algorithms
RSA 3072, ECDSA
Hash functions
SHA-1, SHA-224, SHA-256, SHA-384, SHA-512, SHA256, SHA224, SHA512, SHA384
Protocols
SSH, TLS
Randomness
TRNG, DRBG, RNG
Libraries
OpenSSL
Elliptic Curves
P-224, P-384, P-521, P-192, P-256, K-233, K-409, B-233, B-409, K-283, K-571, B-571, B-163
Block cipher modes
ECB, CBC, CTR, OFB

Security level
Level 2

Standards
FIPS 140-2, FIPS 180-3, FIPS 198-1, FIPS 197, SP 800-90A

File metadata

Title Security Policy
Subject Network Intrusion Prevention System Version 4.6.2
Author Apex Assurance Group
Creation date D:20160303172541-05'00'
Modification date D:20160303172639-05'00'
Pages 41
Creator Acrobat PDFMaker 11 for Word
Producer Adobe PDF Library 11.0

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 2578,
  "dgst": "b1ac3a14adbfd6d9",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": [
        "AES#3210",
        "RSA#1635",
        "ECDSA#591",
        "Triple-DES#1827",
        "DRBG#679",
        "ECDSA#588",
        "HMAC#2018",
        "HMAC#2023",
        "RSA#1633",
        "SHS#2651",
        "SHS#2657",
        "Triple-DES#1825",
        "AES#3204",
        "DRBG#682"
      ]
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "4.6.2"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECDSA": {
            "ECDSA": 14
          }
        },
        "RSA": {
          "RSA 3072": 1
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 7
        },
        "CTR": {
          "CTR": 2
        },
        "ECB": {
          "ECB": 4
        },
        "OFB": {
          "OFB": 4
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {
        "OpenSSL": {
          "OpenSSL": 5
        }
      },
      "crypto_protocol": {
        "SSH": {
          "SSH": 4
        },
        "TLS": {
          "TLS": {
            "TLS": 22
          }
        }
      },
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "B-163": 1,
          "B-233": 3,
          "B-409": 3,
          "B-571": 2,
          "K-233": 3,
          "K-283": 2,
          "K-409": 3,
          "K-571": 2,
          "P-192": 2,
          "P-224": 4,
          "P-256": 2,
          "P-384": 4,
          "P-521": 2
        }
      },
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#1": 4,
          "#2": 3,
          "#3": 2,
          "#4": 2,
          "#5": 2,
          "#6": 2,
          "#7": 2,
          "#8": 2
        }
      },
      "fips_certlike": {
        "Certlike": {
          "AES 128, 192": 1,
          "HMAC- SHA-224": 1,
          "HMAC- SHA224": 2,
          "HMAC- SHA256": 1,
          "HMAC- SHA384": 1,
          "HMAC- SHA512": 2,
          "HMAC-SHA- 256": 2,
          "HMAC-SHA-512": 2,
          "HMAC-SHA1": 6,
          "HMAC-SHA256": 2,
          "HMAC-SHA384": 4,
          "RSA 3072": 1,
          "SHA- 512": 1,
          "SHA-1": 8,
          "SHA-224": 8,
          "SHA-256": 9,
          "SHA-384": 7,
          "SHA-512": 6,
          "SHA224": 2,
          "SHA256": 3,
          "SHA384": 1,
          "SHA512": 2
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 2": 4
        }
      },
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA-1": 8
          },
          "SHA2": {
            "SHA-224": 8,
            "SHA-256": 9,
            "SHA-384": 7,
            "SHA-512": 6,
            "SHA224": 2,
            "SHA256": 3,
            "SHA384": 1,
            "SHA512": 2
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 36
        },
        "RNG": {
          "RNG": 13
        },
        "TRNG": {
          "TRNG": 3
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 16,
          "FIPS 180-3": 2,
          "FIPS 197": 2,
          "FIPS 198-1": 2
        },
        "NIST": {
          "SP 800-90A": 2
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 12
          }
        },
        "DES": {
          "3DES": {
            "Triple-DES": 11
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 3,
            "HMAC": 4,
            "HMAC-SHA-512": 1
          }
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "Apex Assurance Group",
      "/Client": "IBM Security",
      "/Company": "IBM Corporation",
      "/CreationDate": "D:20160303172541-05\u002700\u0027",
      "/Creator": "Acrobat PDFMaker 11 for Word",
      "/DocVersion": "2.2",
      "/Keywords": "",
      "/ModDate": "D:20160303172639-05\u002700\u0027",
      "/Producer": "Adobe PDF Library 11.0",
      "/SourceModified": "D:20160303171414",
      "/Subject": "Network Intrusion Prevention System Version 4.6.2",
      "/Title": "Security Policy",
      "pdf_file_size_bytes": 779353,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "http://csrc.nist.gov/groups/STM/cmvp/",
          "https://ibmss.flexnetoperations.com/",
          "http://csrc.nist.gov/groups/STM/cmvp/index.html",
          "http://www.apexassurance.com/",
          "http://www.ibm.com/"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 41
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "8ee3f6e9005b0d47d4fe2a9b64bb0e3fa8e01ea5a0668166ddb20cf7bc764a04",
    "policy_txt_hash": "fd5ba576efea443fd94826b85c93241b2d2f5563ccdeb73d03c3d9b52414f4c6"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When installed, initialized and configured as specified in the Security Policy Section 3. The module generates cryptographic keys whose strengths are modified by available entropy",
    "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/FIPS140ConsolidatedCertMarch2016.pdf",
    "date_sunset": null,
    "description": "The Network Intrusion Prevention System (NIPS) automatically blocks malicious attacks while preserving network bandwidth and availability. The appliances are purpose-built, Layer 2 network security appliances that you can deploy either at the gateway or the network to block intrusion attempts, denial of service (DoS) attacks, malicious code, backdoors, spyware, peer-to-peer applications, and a growing list of threats without requiring extensive network reconfiguration.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Mitigation of Other Attacks: N/A"
    ],
    "fw_versions": "4.6.2",
    "historical_reason": "Moved to historical list due to sunsetting",
    "hw_versions": "GX4004, GX5008C, GX5008SFP, GX5208C, GX5208SFP, GX7412 and GX7800 with Tamper Evident Label Kit: 00VM255",
    "level": 2,
    "mentioned_certs": {},
    "module_name": "IBM Security Network Intrusion Prevention System Version 4.6.2",
    "module_type": "Hardware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-2",
    "status": "historical",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2016-03-07",
        "lab": "COACT INC CAFE LAB",
        "validation_type": "Initial"
      }
    ],
    "vendor": "IBM Security",
    "vendor_url": "http://www.ibm.com"
  }
}