Infinera G42

Certificate #5064

Webpage information

Status active
Validation dates 22.09.2025 , 27.01.2026
Sunset date 21-09-2030
Standard FIPS 140-3
Security level 1
Type Hardware
Embodiment Multi-Chip Stand Alone
Caveat When installed, initialized and configured as specified in Section Secure Operation in Section 11 of the Security Policy
Exceptions
  • Roles, services, and authentication: Level 3
  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A
Description The Infinera G42 is a next-generation compact modular transport network elements deployed as part of a point-to-point, point-to-multipoint network for terrestrial and/or subsea applications. The G42 chassis provides multi-service client access (e.g. Ethernet, Optical Transport Network (OTN), etc.) to the Dense Wavelength Division Multiplexing (DWDM) transport bandwidth.
Vendor Nokia Corporation
References

This certificate's webpage directly references 0 certificates, transitively this expands into 0 certificates.

Security policy

Symmetric Algorithms
AES-128, AES-192, AES-256, AES, AES-, CAST, HMAC, CBC-MAC
Asymmetric Algorithms
RSA 2048, ECDH, ECDSA, ECC, Diffie-Hellman, DHE, DH, DSA
Hash functions
SHA-1, SHA2, PBKDF
Schemes
MAC
Protocols
SSH, SSHv2, TLS v1.2, TLS v1.3, TLS, TLSv1.2, TLS 1.2, TLS 1.3, TLSv1.3, IKEv2, IKE, IPsec
Randomness
DRBG, RBG
Elliptic Curves
P-256, P-384, P-521, P-192, Curve P-521
Block cipher modes
CTR, GCM

Trusted Execution Environments
PSP, SSC, SE
Vendor
NXP

Security level
Level 1
Certification process
out of scope, 140-3 CMVP. Any firmware loaded into the module that is not shown on the module certificate, is out of scope of this validation and requires a separate FIPS 140-3 validation. 7 Physical Security The module

Standards
FIPS 140-3, FIPS186-4, FIPS 186-4, FIPS 198-1, FIPS 180-4, SP 800-140, SP 800-38A, SP 800-38C, SP 800-38B, SP 800-38D, SP 800-90A, SP 800-56A, SP 800-135, SP 800-132, PKCS 1, RFC7627, RFC5288, RFC8446, RFC 4106, RFC7296, RFC 4419, RFC 7919, RFC 3526, ISO/IEC 19790

File metadata

Author Hawes, David J. (Fed)
Creation date D:20260123124043-05'00'
Modification date D:20260123124341-05'00'
Pages 140
Creator Acrobat PDFMaker 25 for Word
Producer Adobe PDF Library 25.1.5

Heuristics

No heuristics are available for this certificate.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.fips.FIPSCertificate",
  "cert_id": 5064,
  "dgst": "b28bb581f28c6301",
  "heuristics": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
    "algorithms": {
      "_type": "Set",
      "elements": []
    },
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "-"
      ]
    },
    "indirect_transitive_cves": null,
    "module_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "module_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "policy_processed_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "policy_prunned_references": {
      "_type": "Set",
      "elements": []
    },
    "related_cves": null,
    "verified_cpe_matches": null
  },
  "pdf_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
    "keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 3
          },
          "ECDH": {
            "ECDH": 209
          },
          "ECDSA": {
            "ECDSA": 280
          }
        },
        "FF": {
          "DH": {
            "DH": 157,
            "DHE": 1,
            "Diffie-Hellman": 4
          },
          "DSA": {
            "DSA": 3
          }
        },
        "RSA": {
          "RSA 2048": 1
        }
      },
      "certification_process": {
        "OutOfScope": {
          "140-3 CMVP. Any firmware loaded into the module that is not shown on the module certificate, is out of scope of this validation and requires a separate FIPS 140-3 validation. 7 Physical Security The module": 1,
          "out of scope": 1
        }
      },
      "cipher_mode": {
        "CTR": {
          "CTR": 1
        },
        "GCM": {
          "GCM": 41
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "IKE": {
          "IKE": 2,
          "IKEv2": 197
        },
        "IPsec": {
          "IPsec": 4
        },
        "SSH": {
          "SSH": 362,
          "SSHv2": 35
        },
        "TLS": {
          "TLS": {
            "TLS": 385,
            "TLS 1.2": 1,
            "TLS 1.3": 3,
            "TLS v1.2": 7,
            "TLS v1.3": 6,
            "TLSv1.2": 1,
            "TLSv1.3": 1
          }
        }
      },
      "crypto_scheme": {
        "MAC": {
          "MAC": 7
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "Curve P-521": 1,
          "P-192": 2,
          "P-256": 74,
          "P-384": 60,
          "P-521": 115
        }
      },
      "eval_facility": {},
      "fips_cert_id": {
        "Cert": {
          "#5": 1
        }
      },
      "fips_certlike": {
        "Certlike": {
          "- PKCS 1": 4,
          "AES-128": 3,
          "AES-128/192/256": 1,
          "AES-192": 3,
          "AES-256": 3,
          "DRBG 384": 1,
          "HMAC-SHA-1": 18,
          "PKCS 1": 4,
          "RSA 2048": 1,
          "SHA-1": 17,
          "SHA2": 1,
          "SHA2- 384": 2,
          "SHA2- 512": 2,
          "SHA2-224": 6,
          "SHA2-256": 26,
          "SHA2-384": 12,
          "SHA2-512": 84
        }
      },
      "fips_security_level": {
        "Level": {
          "Level 1": 5
        }
      },
      "hash_function": {
        "PBKDF": {
          "PBKDF": 7
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 17
          },
          "SHA2": {
            "SHA2": 1
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 197
        },
        "RNG": {
          "RBG": 2
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140-3": 13,
          "FIPS 180-4": 21,
          "FIPS 186-4": 24,
          "FIPS 198-1": 11,
          "FIPS186-4": 81
        },
        "ISO": {
          "ISO/IEC 19790": 2
        },
        "NIST": {
          "SP 800-132": 2,
          "SP 800-135": 6,
          "SP 800-140": 1,
          "SP 800-38A": 7,
          "SP 800-38B": 1,
          "SP 800-38C": 2,
          "SP 800-38D": 4,
          "SP 800-56A": 4,
          "SP 800-90A": 2
        },
        "PKCS": {
          "PKCS 1": 4
        },
        "RFC": {
          "RFC 3526": 2,
          "RFC 4106": 1,
          "RFC 4419": 2,
          "RFC 7919": 2,
          "RFC5288": 1,
          "RFC7296": 1,
          "RFC7627": 6,
          "RFC8446": 2
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 42,
            "AES-": 1,
            "AES-128": 3,
            "AES-192": 3,
            "AES-256": 3
          },
          "CAST": {
            "CAST": 138
          }
        },
        "constructions": {
          "MAC": {
            "CBC-MAC": 1,
            "HMAC": 42
          }
        }
      },
      "tee_name": {
        "AMD": {
          "PSP": 24
        },
        "IBM": {
          "SE": 1,
          "SSC": 3
        }
      },
      "tls_cipher_suite": {},
      "vendor": {
        "NXP": {
          "NXP": 1
        }
      },
      "vulnerability": {}
    },
    "policy_metadata": {
      "/Author": "Hawes, David J. (Fed)",
      "/Comments": "",
      "/Company": "",
      "/CreationDate": "D:20260123124043-05\u002700\u0027",
      "/Creator": "Acrobat PDFMaker 25 for Word",
      "/Keywords": "",
      "/ModDate": "D:20260123124341-05\u002700\u0027",
      "/Producer": "Adobe PDF Library 25.1.5",
      "/SourceModified": "",
      "/Subject": "",
      "/Title": "",
      "pdf_file_size_bytes": 1473433,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 140
    }
  },
  "state": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
    "module_download_ok": true,
    "module_extract_ok": true,
    "policy_convert_ok": true,
    "policy_download_ok": true,
    "policy_extract_ok": true,
    "policy_json_hash": null,
    "policy_pdf_hash": "c5ab9335bc136d630eafe6398d1110882a7dccd0b313642689a3ee584d6a07f5",
    "policy_txt_hash": "16795bbd9fcd79ea4712c652a9074d8bc6829cebc5912e507654e1217eb83810"
  },
  "web_data": {
    "_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
    "caveat": "When installed, initialized and configured as specified in Section Secure Operation in Section 11 of the Security Policy",
    "certificate_pdf_url": null,
    "date_sunset": "2030-09-21",
    "description": "The Infinera G42 is a next-generation compact modular transport network elements deployed as part of a point-to-point, point-to-multipoint network for terrestrial and/or subsea applications. The G42 chassis provides multi-service client access (e.g. Ethernet, Optical Transport Network (OTN), etc.) to the Dense Wavelength Division Multiplexing (DWDM) transport bandwidth.",
    "embodiment": "Multi-Chip Stand Alone",
    "exceptions": [
      "Roles, services, and authentication: Level 3",
      "Non-invasive security: N/A",
      "Mitigation of other attacks: N/A"
    ],
    "fw_versions": null,
    "historical_reason": null,
    "hw_versions": null,
    "level": 1,
    "mentioned_certs": {},
    "module_name": "Infinera G42",
    "module_type": "Hardware",
    "revoked_link": null,
    "revoked_reason": null,
    "standard": "FIPS 140-3",
    "status": "active",
    "sw_versions": null,
    "tested_conf": null,
    "validation_history": [
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2025-09-22",
        "lab": "Gossamer Security Solutions",
        "validation_type": "Initial"
      },
      {
        "_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
        "date": "2026-01-27",
        "lab": "Gossamer Security Solutions",
        "validation_type": "Update"
      }
    ],
    "vendor": "Nokia Corporation",
    "vendor_url": "http://www.nokia.com/optical-networks/infinera/"
  }
}