This page was not yet optimized for use on mobile
devices.
Orbit MCR and Orbit ECR
Certificate #3634
Webpage information
Security policy
Symmetric Algorithms
AES, AES-256, AES-, AES-128, RC4, DES, Triple-DES, ChaCha20, Poly1305, HMAC, HMAC-SHA-256, HMAC-SHA-384, HMAC-SHA-512, CMACAsymmetric Algorithms
RSA-3072, RSA-2048, RSA 3072, ECDSA, Diffie-Hellman, DH, DSAHash functions
SHA-1, SHA1, SHA-224, SHA-256, SHA-384, SHA-512, SHA256, MD5, PBKDF, PBKDF2Schemes
MAC, Key Exchange, Key exchange, AEADProtocols
SSH, TLS, TLS 1.2, IKE, IKEv2, IKEv1, IPsec, VPNRandomness
DRBG, RNGLibraries
OpenSSLElliptic Curves
Curve25519, Ed25519Block cipher modes
ECB, CBC, CTR, CFB, GCM, CCMTLS cipher suites
TLS_DHE_DSS_WITH_AES_128_CBC_SHA, TLS_DHE_DSS_WITH_AES_128_GCM_SHA256, TLS_DHE_DSS_WITH_AES_256_CBC_SHA256, TLS_DHE_RSA_WITH_AES_128_CBC_SHA, TLS_DHE_RSA_WITH_AES_128_GCM_SHA256, TLS_DHE_RSA_WITH_AES_256_CBC_SHA256, TLS_DH_DSS_WITH_AES_128_CBC_SHA, TLS_DH_DSS_WITH_AES_128_GCM_SHA256, TLS_DH_DSS_WITH_AES_256_CBC_SHA256, TLS_DH_RSA_WITH_AES_128_CBC_SHA, TLS_DH_RSA_WITH_AES_128_GCM_SHA256, TLS_DH_RSA_WITH_AES_256_CBC_SHA256, TLS_PSK_WITH_AES_256_CBC_SHA, TLS_RSA_WITH_AES_128_CBC_SHA256, TLS_RSA_WITH_AES_256_CBC_SHA, TLS_RSA_WITH_AES_256_GCM_SHA384, TLS_RSA_WITH_AES_128_CBC_SHASecurity level
Level 2, Level 3Standards
FIPS 140-2, FIPS 197, FIPS 186-4, FIPS 198-1, FIPS 180-4, FIPS140-2, SP 800-38A, SP 800-38C, SP 800-38B, SP 800-38D, SP 800-135, SP 800-90A, SP 800-20, SP 800-38F, SP 800-56C, SP 800-132, PKCS #1, PKCS1, RFC4251, RFC6071, RFC2409, RFC7296, RFC4307, RFC2451, X.509File metadata
| Subject | FIPS 140-2 Security Policy |
|---|---|
| Author | GE MDS LLC |
| Creation date | D:20210512121205-07'00' |
| Modification date | D:20210512121226-07'00' |
| Pages | 33 |
| Creator | Acrobat PDFMaker 17 for Word |
| Producer | Adobe PDF Library 17.11.238 |
Heuristics
No heuristics are available for this certificate.
References
No references are available for this certificate.
Updates Feed
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate was first processed.
Raw data
{
"_type": "sec_certs.sample.fips.FIPSCertificate",
"cert_id": 3634,
"dgst": "dd6103b473273ecd",
"heuristics": {
"_type": "sec_certs.sample.fips.FIPSCertificate.Heuristics",
"algorithms": {
"_type": "Set",
"elements": [
"DRBG#2450",
"HMAC#3864",
"CVL#2118",
"RSA#3085",
"CVL#1221",
"DRBG#1496",
"KTS#5889",
"SHS#3720",
"SHS#4640",
"SHS#4639",
"RSA#2471",
"DSA#1484",
"DSA#1210",
"CVL#1219",
"HMAC#2997",
"Triple-DES#2416",
"AES#5889",
"AES#5888",
"Triple-DES#2868",
"Triple-DES#2867",
"AES#4539",
"AES#5887"
]
},
"cpe_matches": null,
"direct_transitive_cves": null,
"extracted_versions": {
"_type": "Set",
"elements": [
"7.1.1",
"1.0",
"7.1.3"
]
},
"indirect_transitive_cves": null,
"module_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"module_prunned_references": {
"_type": "Set",
"elements": []
},
"policy_processed_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"policy_prunned_references": {
"_type": "Set",
"elements": []
},
"related_cves": null,
"verified_cpe_matches": null
},
"pdf_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.PdfData",
"keywords": {
"asymmetric_crypto": {
"ECC": {
"ECDSA": {
"ECDSA": 1
}
},
"FF": {
"DH": {
"DH": 12,
"Diffie-Hellman": 5
},
"DSA": {
"DSA": 16
}
},
"RSA": {
"RSA 3072": 2,
"RSA-2048": 1,
"RSA-3072": 2
}
},
"certification_process": {},
"cipher_mode": {
"CBC": {
"CBC": 5
},
"CCM": {
"CCM": 2
},
"CFB": {
"CFB": 3
},
"CTR": {
"CTR": 10
},
"ECB": {
"ECB": 4
},
"GCM": {
"GCM": 5
}
},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {
"OpenSSL": {
"OpenSSL": 5
}
},
"crypto_protocol": {
"IKE": {
"IKE": 8,
"IKEv1": 4,
"IKEv2": 5
},
"IPsec": {
"IPsec": 1
},
"SSH": {
"SSH": 37
},
"TLS": {
"TLS": {
"TLS": 30,
"TLS 1.2": 2
}
},
"VPN": {
"VPN": 7
}
},
"crypto_scheme": {
"AEAD": {
"AEAD": 1
},
"KEX": {
"Key Exchange": 3,
"Key exchange": 1
},
"MAC": {
"MAC": 1
}
},
"device_model": {},
"ecc_curve": {
"Curve": {
"Curve25519": 1
},
"Edwards": {
"Ed25519": 1
}
},
"eval_facility": {},
"fips_cert_id": {
"Cert": {
"#1": 2,
"#1210": 2,
"#1219": 1,
"#1221": 1,
"#1484": 2,
"#1496": 2,
"#2416": 1,
"#2450": 2,
"#2471": 2,
"#2867": 1,
"#2868": 1,
"#2997": 2,
"#3085": 2,
"#3720": 1,
"#3864": 1,
"#4539": 7,
"#4639": 1,
"#4640": 1,
"#5887": 2,
"#5888": 4,
"#5889": 2
}
},
"fips_certlike": {
"Certlike": {
"#2450 DRBG": 1,
"#3085 RSA": 1,
"#4539 HMAC": 1,
"#5887 RSA": 1,
"AES #4539": 1,
"AES #5887": 1,
"AES (128": 1,
"AES Cert. #4539": 2,
"AES Cert. #5887": 1,
"AES Cert. #5888": 1,
"AES Cert. #5889": 1,
"AES- 128": 1,
"AES- 256": 3,
"AES-128": 9,
"AES-256": 8,
"AES-CBC (128": 1,
"AES-CTR (128": 1,
"DRBG Cert. #1496": 1,
"DRBG Cert. #2450": 1,
"DSA Cert. #1210": 1,
"DSA Cert. #1484": 1,
"DSA-2048": 2,
"DSA-3072": 2,
"Diffie-Hellman (CVL Cert. #1219": 1,
"Diffie-Hellman (CVL Cert. #1221": 1,
"Diffie-Hellman 2048": 2,
"HMAC #2997": 2,
"HMAC Cert. #2997": 2,
"HMAC Cert. #3864": 2,
"HMAC-SHA-1": 8,
"HMAC-SHA-256": 6,
"HMAC-SHA-384": 2,
"HMAC-SHA-512": 2,
"HMAC-SHA1": 4,
"HMAC-SHA1-160": 1,
"HMAC-SHA1-96": 2,
"HMAC-SHA256": 2,
"HMAC-SHA512": 2,
"PKCS #1": 4,
"PKCS1": 4,
"RSA 3072": 2,
"SHA Cert. #3720": 1,
"SHA Cert. #4639": 1,
"SHA Cert. #4640": 1,
"SHA-1": 12,
"SHA-224": 9,
"SHA-256": 17,
"SHA-384": 12,
"SHA-512": 7,
"SHA-512 2997": 1,
"SHA-512 3720": 1,
"SHA-512 3864": 1,
"SHA-512 4639": 1,
"SHA-512 4640": 1,
"SHA1": 4,
"SHA256": 1
}
},
"fips_security_level": {
"Level": {
"Level 2": 2,
"Level 3": 1
}
},
"hash_function": {
"MD": {
"MD5": {
"MD5": 3
}
},
"PBKDF": {
"PBKDF": 1,
"PBKDF2": 4
},
"SHA": {
"SHA1": {
"SHA-1": 12,
"SHA1": 4
},
"SHA2": {
"SHA-224": 9,
"SHA-256": 17,
"SHA-384": 12,
"SHA-512": 12,
"SHA256": 1
}
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"PRNG": {
"DRBG": 21
},
"RNG": {
"RNG": 3
}
},
"side_channel_analysis": {},
"standard_id": {
"FIPS": {
"FIPS 140-2": 8,
"FIPS 180-4": 3,
"FIPS 186-4": 4,
"FIPS 197": 3,
"FIPS 198-1": 2,
"FIPS140-2": 1
},
"NIST": {
"SP 800-132": 2,
"SP 800-135": 8,
"SP 800-20": 3,
"SP 800-38A": 3,
"SP 800-38B": 2,
"SP 800-38C": 2,
"SP 800-38D": 3,
"SP 800-38F": 4,
"SP 800-56C": 1,
"SP 800-90A": 2
},
"PKCS": {
"PKCS #1": 2,
"PKCS1": 2
},
"RFC": {
"RFC2409": 1,
"RFC2451": 1,
"RFC4251": 1,
"RFC4307": 1,
"RFC6071": 1,
"RFC7296": 1
},
"X509": {
"X.509": 16
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 13,
"AES-": 5,
"AES-128": 9,
"AES-256": 8
},
"RC": {
"RC4": 1
}
},
"DES": {
"3DES": {
"Triple-DES": 15
},
"DES": {
"DES": 1
}
},
"constructions": {
"MAC": {
"CMAC": 2,
"HMAC": 15,
"HMAC-SHA-256": 3,
"HMAC-SHA-384": 1,
"HMAC-SHA-512": 1
}
},
"djb": {
"ChaCha": {
"ChaCha20": 1
},
"Poly": {
"Poly1305": 1
}
}
},
"tee_name": {},
"tls_cipher_suite": {
"TLS": {
"TLS_DHE_DSS_WITH_AES_128_CBC_SHA": 1,
"TLS_DHE_DSS_WITH_AES_128_GCM_SHA256": 1,
"TLS_DHE_DSS_WITH_AES_256_CBC_SHA256": 1,
"TLS_DHE_RSA_WITH_AES_128_CBC_SHA": 1,
"TLS_DHE_RSA_WITH_AES_128_GCM_SHA256": 1,
"TLS_DHE_RSA_WITH_AES_256_CBC_SHA256": 1,
"TLS_DH_DSS_WITH_AES_128_CBC_SHA": 1,
"TLS_DH_DSS_WITH_AES_128_GCM_SHA256": 1,
"TLS_DH_DSS_WITH_AES_256_CBC_SHA256": 1,
"TLS_DH_RSA_WITH_AES_128_CBC_SHA": 1,
"TLS_DH_RSA_WITH_AES_128_GCM_SHA256": 1,
"TLS_DH_RSA_WITH_AES_256_CBC_SHA256": 1,
"TLS_PSK_WITH_AES_256_CBC_SHA": 1,
"TLS_RSA_WITH_AES_128_CBC_SHA": 1,
"TLS_RSA_WITH_AES_128_CBC_SHA256": 1,
"TLS_RSA_WITH_AES_256_CBC_SHA": 2,
"TLS_RSA_WITH_AES_256_GCM_SHA384": 1
}
},
"vendor": {},
"vulnerability": {}
},
"policy_metadata": {
"/Author": "GE MDS LLC",
"/Company": "Microsoft",
"/CreationDate": "D:20210512121205-07\u002700\u0027",
"/Creator": "Acrobat PDFMaker 17 for Word",
"/ModDate": "D:20210512121226-07\u002700\u0027",
"/Producer": "Adobe PDF Library 17.11.238",
"/SourceModified": "D:20210512185328",
"/Subject": "FIPS 140-2 Security Policy",
"pdf_file_size_bytes": 756955,
"pdf_hyperlinks": {
"_type": "Set",
"elements": [
"https://tools.ietf.org/html/rfc4251",
"https://tools.ietf.org/html/rfc6071",
"https://tools.ietf.org/html/rfc2451",
"https://tools.ietf.org/html/rfc7296",
"https://tools.ietf.org/html/draft-nourse-scep-23",
"https://tools.ietf.org/html/rfc2409",
"https://tools.ietf.org/html/rfc4307"
]
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 33
}
},
"state": {
"_type": "sec_certs.sample.fips.FIPSCertificate.InternalState",
"module_download_ok": true,
"module_extract_ok": true,
"policy_convert_ok": true,
"policy_download_ok": true,
"policy_extract_ok": true,
"policy_json_hash": null,
"policy_pdf_hash": "42f2ceb8b64256100fc4ac3284da914fed34ff73a08082f7da95cee0d19b33cd",
"policy_txt_hash": "bfb45d12b9a3ec53b9c69088358567e40075ab852d0baf4ff220fc3d2752a5af"
},
"web_data": {
"_type": "sec_certs.sample.fips.FIPSCertificate.WebData",
"caveat": "When operated in FIPS mode",
"certificate_pdf_url": "https://csrc.nist.gov/CSRC/media/projects/cryptographic-module-validation-program/documents/certificates/March 2020_160420.pdf",
"date_sunset": null,
"description": "The GE MDS Orbit Multiservice Connect Router (MCR) and Edge Connect Router (ECR) modules are secure wireless communications devices, which operate on cellular bands (2G/3G/4G LTE), licensed and unlicensed bands, and 802.11 Wi-Fi. The modules are available in two form factors (MCR and ECR), with different port/interface configurations available for each.",
"embodiment": "Multi-Chip Stand Alone",
"exceptions": null,
"fw_versions": "7.1.1 and 7.1.3",
"historical_reason": "SP 800-56Arev3 transition",
"hw_versions": "P/Ns MCR Chassis v1.0 and ECR Chassis v1.0; Component P/Ns: U91, L1B, L2X, L2B, L4A, L4E, L4C, L7A, L7W, L9C, 4G1, 4G2, 4G3, 4G4, 4G5, 4GP, 4GY, 4GZ, 4GA, E4S, E42, W51, W52, 3G1 and NNN (refer to Security Policy Tables 1 and 2 for valid combinations)",
"level": 2,
"mentioned_certs": {},
"module_name": "Orbit MCR and Orbit ECR",
"module_type": "Hardware",
"revoked_link": null,
"revoked_reason": null,
"standard": "FIPS 140-2",
"status": "historical",
"sw_versions": null,
"tested_conf": null,
"validation_history": [
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2020-03-20",
"lab": "UL Verification Services, Inc.",
"validation_type": "Initial"
},
{
"_type": "sec_certs.sample.fips.FIPSCertificate.ValidationHistoryEntry",
"date": "2021-07-05",
"lab": "UL Verification Services, Inc.",
"validation_type": "Update"
}
],
"vendor": "GE MDS LLC",
"vendor_url": "http://www.gemds.com"
}
}