Module Name
CN8000 Multi-slot Encryptor
Validation Dates
10/17/2017;12/08/2017;02/07/2018
Caveat
When operated in FIPS mode.
Security Level Exceptions
- Cryptographic Module Ports and Interfaces: Level 3
- Roles, Services, and Authentication: Level 3
- Finite State Model: Level 3
- Physical Security: Level 3
- Operational Environment: Level 3
- EMI/EMC: Level 3
- Self-Tests: Level 3
- Design Assurance: Level 3
- Mitigation of Other Attacks: N/A
Embodiment
Multi-Chip Stand Alone
Description
The CN8000 is a high-speed multi-slot hardware encryption platform that secures data over optical Ethernet and Fibre Channel networks. The CN8000 supports up to 10 high speed encryption slots. Each slot can be configured by the user to support 1-10Gb/s Ethernet or 1-8Gb/s Fibre Channel. The CN8000 module contains removable SFP+ transceivers to provide flexibility in connecting to the physical network. Data privacy is provided by FIPS approved AES CFB and CTR algorithms. GCM is also available for applications that demand authentication.
Allowed Algorithms
Diffie-Hellman (key agreement; key establishment methodology provides 112 bits of encryption strength); EC Diffie-Hellman (key agreement; key establishment methodology provides between 128 and 256 bits of encryption strength); NDRNG; RSA (key wrapping; key establishment methodology provides 112 or 150 bits of encryption strength)
Hardware Versions
A8003-01, A8003-02, A8003-03, A8003-04, A8003-05, A8003-06, A8003-07, A8003-08, A8003-09 and A8003-10
Firmware Versions
3.0.1 and 3.0.2