Module Name
OmniSwitch AOS 8.3.1.R01
Validation Dates
04/03/2019
Caveat
When installed, initialized and configured as specified in Sections 3.1 and 3.2 of the Security Policy and with the tamper-evident seals installed as indicated in the Security Policy
Security Level Exceptions
- Mitigation of Other Attacks: N/A
Embodiment
Multi-Chip Stand Alone
Description
The Alcatel-Lucent Enterprise OmniSwitch series of switches are rugged and high bandwidth switches running on the widely-deployed and field-proven Alcatel-Lucent Operating System (AOS). These switches are ideal for industrial and mission-critical applications that require wider operating temperature ranges, more stringent EMC/EMI requirements, and an optimized feature set for high security, reliability, performance, and easy management.
FIPS Algorithms
AES |
Certs. #4285, #4286, #4287, #4440, #4441 and #4443 |
CKG |
vendor affirmed |
CVL |
Certs. #1184, #1185 and #1186 |
DRBG |
Certs. #1345, #1346 and #1347 |
ECDSA |
Certs. #1078, #1079 and #1081 |
HMAC |
Certs. #2821, #2822 and #2823 |
KTS |
AES Cert. #4285 and HMAC Cert. #2821; key establishment methodology provides 128 or 256 bits of encryption strength |
KTS |
AES Cert. #4286 and HMAC Cert. #2822; key establishment methodology provides 128 or 256 bits of encryption strength |
KTS |
AES Cert. #4287 and HMAC Cert. #2823; key establishment methodology provides 128 or 256 bits of encryption strength |
KTS |
AES Cert. #4440 and HMAC Cert. #2821; key establishment methodology provides 128 or 256 bits of encryption strength |
KTS |
AES Cert. #4441 and HMAC Cert. #2822; key establishment methodology provides 128 or 256 bits of encryption strength |
KTS |
AES Cert. #4443 and HMAC Cert. #2823; key establishment methodology provides 128 or 256 bits of encryption strength |
RSA |
Certs. #2306, #2307, #2308, #2421, #2425 and #2427 |
SHS |
Certs. #3523, #3524 and #3525 |
Allowed Algorithms
Diffie-Hellman (key agreement; key establishment methodology provides 112 bits of encryption strength); EC Diffie-Hellman (key agreement; key establishment methodology provides between 128 and 256 bits of encryption strength); NDRNG; RSA (key wrapping; key establishment methodology provides 112 bits of encryption strength)
Hardware Versions
OmniSwitch 6860-24, OmniSwitch 6860-P24, OmniSwitch 6860-48, OmniSwitch 6860-P48, OmniSwitch 6860E-24, OmniSwitch 6860E-P24, OmniSwitch 6860E-48, OmniSwitch 6860E-P48, OmniSwitch 6860E-U28, OmniSwitch 6865-P16X, OmniSwitch 6900-X20, OmniSwitch 6900-X40, OmniSwitch 6900-T20, OmniSwitch 6900-T40, OmniSwitch 6900-Q32, and OmniSwitch 6900-X72; FIPS Kit P/N: OS-FIPSKIT
Firmware Versions
AOS 8.3.1.R01