Module Name
Juniper Networks MX240, MX480, MX960, MX2010, MX2020 3D Universal Edge Routers and EX9204, EX9208, EX9214 Ethernet Switches with RE1800 Routing Engine
Validation Dates
03/25/2019
Caveat
When operated in FIPS mode, installed, initialized and configured as specified in Section 1.2 and 6 of the Security Policy
Security Level Exceptions
- Roles, Services, and Authentication: Level 3
- Design Assurance: Level 3
- Mitigation of Other Attacks: N/A
Embodiment
Multi-Chip Stand Alone
Description
Juniper Networks MX Series is a robust portfolio of SDN enabled routing platforms that provide industry leading system capacity,density,security and performance .RE1800 routing engines provide enhanced scaling and performance. Juniper Networks EX9200 series Ethernet Switches provide high performance, scalable connectivity, and carrier-class reliability for high-density environments with a a full suite of Layer 2 and Layer 3 switching capabilities along with firewall filters, multicast, hardware tunneling and Qos.
FIPS Algorithms
AES |
Cert. #5089 |
CVL |
Cert. #1641 |
DRBG |
Certs. #1895 and #1896 |
ECDSA |
Cert. #1319 |
HMAC |
Certs. #3392, #3393 and #3394 |
KTS |
AES Cert. #5089 and HMAC Cert. #3392; key establishment methodology provides between 128 and 256 bits of encryption strength |
KTS |
Triple-DES Cert. #2622 and HMAC Cert. #3392; key establishment methodology provides 112 bits of encryption strength |
SHS |
Certs. #4138, #4139 and #4140 |
Triple-DES |
Cert. #2622 |
Allowed Algorithms
EC Diffie-Hellman (CVL Cert. #1641, key agreement; key establishment methodology provides between 128 and 256 bits of encryption strength); NDRNG
Hardware Versions
MX240, MX480, MX960, MX2010, MX2020, EX9204, EX9208 and EX9214 with components identified in Security Policy Table 1
Firmware Versions
Junos OS 17.3R2