U.S. flag   An unofficial archive of your favorite United States government website
This is an archive
(replace .gov by .rip)

Cryptographic Module Validation Program CMVP

Certificate #3137

Details

Module Name
Juniper Networks vSRX Virtual Firewall
Standard
FIPS 140-2
Status
Active
Sunset Date
2/25/2023
Validation Dates
02/26/2018
Overall Level
1
Caveat
When operated in FIPS mode
Security Level Exceptions
  • Roles, Services, and Authentication: Level 3
  • Physical Security: N/A
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A
Module Type
Software
Embodiment
Multi-Chip Stand Alone
Description
The vSRX delivers a complete and integrated virtual security solution, including unified threat management(UTM), intrusion detection and prevention (IDP), granular application control and robust networking. It provides seamless automated life cycle management capabilities making it an ideal solution for Service Providers, Cloud and Enterprise deployments. The vSRX supports Juniper Networks Contrail, OpenContrail, Openstack and other third-party solutions.
Tested Configuration(s)
  • JUNOS 15.1X49-D100 on VMWare ESXi 5.5 on a Server HP ProLiant DL380 Gen9 (single-user mode)
FIPS Algorithms
AES Certs. #4719, #4720 and #4723
CKG vendor affirmed
CVL Certs. #1362 and #1391
DRBG Certs. #1608 and #1609
ECDSA Certs. #1166 and #1167
HMAC Certs. #3136, #3137 and #3140
KTS AES Certs. #4719 and #4720 and HMAC Certs. #3136 and #3137; key establishment methodology provides between 128 and 256 bits of encryption strength
KTS Triple-DES Certs. #2501 and #2502 and HMAC Certs. #3136 and #3137; key establishment methodology provides 112 bits of encryption strength
RSA Certs. #2572 and #2573
SHS Certs. #3864, #3865, #3868 and #3895
Triple-DES Certs. #2501, #2502 and #2505
Allowed Algorithms
Diffie-Hellman (CVL Certs. #1362 and #1391, key agreement; key establishment methodology provides between 112 bits of encryption strength); EC Diffie-Hellman (CVL Certs. #1362 and #1391, key agreement; key establishment methodology provides 128 or 192 bits of encryption strength); NDRNG
Software Versions
JUNOS 15.1X49 - D100

Vendor

Juniper Networks, Inc.
1133 Innovation Way
Sunnyvale, CA 94089
USA

Bill Shelton
bshelton@juniper.net
Phone: 408-745-2000
Fax: 408-745-2100
Vann (Vanna) Nguyen
vann@juniper.net
Phone: 408-745-2000
Fax: 408-745-2100

Lab

ACUMEN SECURITY, LLC
NVLAP Code: 201029-0