{"_type": "sec_certs.sample.fips.FIPSCertificate", "dgst": "beb81e71a33a62f3", "cert_id": 5134, "web_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.WebData", "module_name": "Juniper Networks MX Series 3D Universal Edge Routers", "validation_history": [{"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry", "date": "2026-01-15", "validation_type": "Initial", "lab": "Teron Labs"}], "vendor_url": "http://www.juniper.net", "vendor": "Juniper Networks, Inc.", "certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/January 2026_250226_0720.pdf", "module_type": "Hardware", "standard": "FIPS 140-3", "status": "active", "level": 1, "caveat": "When installed, initialized and configured as specified in Section 11.1 of the Security Policy", "exceptions": ["Roles, services, and authentication: Level 2", "Non-invasive security: N/A", "Mitigation of other attacks: N/A"], "embodiment": "Multi-Chip Stand Alone", "description": "The Juniper Networks MX Series 3D Universal Edge Routers Universal Edge Routers provide dedicated high-performance processing for flows and sessions and integrates advanced security capabilities that protect the network infrastructure as well as user data. The MX-SPC3 provides security services such as carrier-grade NAT (CGNAT), IPsec, stateful firewall, deep packet inspection, IDS, traffic load balancing, Web filtering, and DNS sinkhole.", "tested_conf": null, "hw_versions": null, "fw_versions": null, "sw_versions": null, "mentioned_certs": {}, "historical_reason": null, "date_sunset": "2031-01-14", "revoked_reason": null, "revoked_link": null}, "pdf_data": {"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData", "keywords": {"fips_cert_id": {}, "fips_security_level": {"Level": {"Level 1": 4, "level 1": 1}}, "fips_certlike": {"Certlike": {"HMAC-SHA-1": 12, "SHA2-256": 22, "SHA2-384": 7, "SHA2-512": 10, "SHA-1": 8, "SHA2- 512": 2, "SHA 256": 1, "SHA 384": 1, "SHA 512": 1, "SHA2- 256": 1, "RSA 2048": 4, "RSA 4096": 3, "- PKCS 1": 2, "AES-128": 1, "AES-192": 1, "AES-256": 1, "AES CBC 128/192/256": 1, "DRBG 256": 2, "PKCS 1": 2}}, "vendor": {}, "eval_facility": {}, "symmetric_crypto": {"AES_competition": {"AES": {"AES-128": 1, "AES-192": 1, "AES-256": 1, "AES": 2}, "CAST": {"CAST": 58}}, "constructions": {"MAC": {"HMAC": 45}}}, "asymmetric_crypto": {"RSA": {"RSA 2048": 4, "RSA 4096": 3}, "ECC": {"ECDH": {"ECDH": 3}, "ECDSA": {"ECDSA": 40}}, "FF": {"DH": {"Diffie-Hellman": 3, "DH": 3}}}, "pq_crypto": {}, "hash_function": {"SHA": {"SHA1": {"SHA-1": 8}}}, "crypto_scheme": {"MAC": {"MAC": 13}, "KEX": {"Key Exchange": 1}, "KA": {"Key Agreement": 2}}, "crypto_protocol": {"SSH": {"SSH": 88, "SSHv2": 1}, "TLS": {"TLS": {"TLS": 2}}, "IPsec": {"IPsec": 1}, "VPN": {"VPN": 1}}, "randomness": {"PRNG": {"DRBG": 57}, "RNG": {"RBG": 2}}, "cipher_mode": {"CBC": {"CBC": 1}, "CTR": {"CTR": 1}}, "ecc_curve": {"NIST": {"P-256": 28, "P-384": 24, "P-521": 24}}, "crypto_engine": {}, "tls_cipher_suite": {}, "crypto_library": {"OpenSSL": {"OpenSSL": 4}}, "vulnerability": {}, "side_channel_analysis": {}, "device_model": {}, "tee_name": {"AMD": {"PSP": 7}}, "os_name": {}, "cplc_data": {}, "ic_data_group": {}, "standard_id": {"FIPS": {"FIPS 140-3": 11, "FIPS186-4": 27, "FIPS 186-4": 8, "FIPS 198-1": 4, "FIPS 180-4": 6, "FIPS 186-5": 2}, "NIST": {"SP 800-38A": 2, "SP 800-56A": 2, "SP 800-90A": 1, "SP 800-135": 1, "SP 800-133": 1}, "PKCS": {"PKCS 1": 2}, "ISO": {"ISO/IEC 19790:2012": 1}}, "javacard_version": {}, "javacard_api_const": {}, "javacard_packages": {}, "certification_process": {"OutOfScope": {"out of scope": 1, "secure initialization instructions results in the module being in a non-compliant state which is out of scope of the validation. 2.5 Algorithms Approved Algorithms: Although the module may have been tested for": 1}}}, "policy_metadata": {"pdf_file_size_bytes": 1390344, "pdf_is_encrypted": false, "pdf_number_of_pages": 41, "/Author": "Hawes, David J. (Fed)", "/CreationDate": "D:20260113073805-05'00'", "/Creator": "Microsoft\u00ae Word for Microsoft 365", "/MSIP_Label_4dd2c6e0-f1e3-4cf2-bd0b-256ab4cff3af_ActionId": "763bec53-c41e-44d8-bd73-d26f70c683a8", "/MSIP_Label_4dd2c6e0-f1e3-4cf2-bd0b-256ab4cff3af_ContentBits": "1", "/MSIP_Label_4dd2c6e0-f1e3-4cf2-bd0b-256ab4cff3af_Enabled": "true", "/MSIP_Label_4dd2c6e0-f1e3-4cf2-bd0b-256ab4cff3af_Method": "Privileged", "/MSIP_Label_4dd2c6e0-f1e3-4cf2-bd0b-256ab4cff3af_Name": "UNCLASSIFIED", "/MSIP_Label_4dd2c6e0-f1e3-4cf2-bd0b-256ab4cff3af_SetDate": "2026-01-13T12:34:52Z", "/MSIP_Label_4dd2c6e0-f1e3-4cf2-bd0b-256ab4cff3af_SiteId": "da9cbe40-ec1e-4997-afb3-17d87574571a", "/MSIP_Label_4dd2c6e0-f1e3-4cf2-bd0b-256ab4cff3af_Tag": "10, 0, 1, 1", "/ModDate": "D:20260113073805-05'00'", "/Producer": "Microsoft\u00ae Word for Microsoft 365", "pdf_hyperlinks": {"_type": "Set", "elements": ["http://www.teronlabs.com/", "https://csrc.nist.gov/projects/cryptographic-module-validation-program/entropy-validations/certificate/56"]}}}, "heuristics": {"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics", "algorithms": {"_type": "Set", "elements": ["HMAC-SHA2-256A3693", "RSA SigGen (FIPS186-4)A3693", "SHA-1A3693", "RSA SigVer (FIPS186-4)A3693", "AES-CTRA3693", "SHA2-512A3693", "HMAC-SHA-1A3693", "KDF SSHA4271", "RSA KeyGen (FIPS186-4)A3693", "KAS-ECC-SSC Sp800-56Ar3A3610", "HMAC-SHA2-512A3693", "AES-CBCA3693", "SHA2-256A3693", "ECDSA KeyVer (FIPS186-4)A3693", "ECDSA SigGen (FIPS186-4)A3693", "ECDSA KeyGen (FIPS186-4)A3693", "ECDSA SigVer (FIPS186-4)A3693", "HMAC DRBGA3493", "SHA2-384A3693"]}, "extracted_versions": {"_type": "Set", "elements": ["-"]}, "cpe_matches": null, "verified_cpe_matches": null, "related_cves": null, "policy_prunned_references": {"_type": "Set", "elements": []}, "module_prunned_references": {"_type": "Set", "elements": []}, "policy_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "module_processed_references": {"_type": "sec_certs.sample.certificate.References", "directly_referenced_by": null, "indirectly_referenced_by": null, "directly_referencing": null, "indirectly_referencing": null}, "direct_transitive_cves": null, "indirect_transitive_cves": null}, "state": {"_type": "sec_certs.sample.fips.InternalState", "module": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": null, "txt_hash": null, "json_hash": null}, "policy": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": "f9f5c53cc41f3196008b54bffda60cb604f7e02de78d0ee32642689068aa2a7a", "txt_hash": "c73217273a72a80dd85433a09c24d9383d8d2746665892d1f06706e38564b182", "json_hash": null}}}