Module Name
Juniper Networks SRX320 Services Gateway with JUNOS 17.4R1-S1
Validation Dates
09/30/2019
Caveat
When operated in FIPS mode
Security Level Exceptions
- Roles, Services, and Authentication: Level 3
- Design Assurance: Level 3
- Mitigation of Other Attacks: N/A
Embodiment
Multi-Chip Stand Alone
Description
The Juniper Networks SRX Series Services Gateways are a series of secure routers that provide essential capabilities to connect, secure, and manage work force locations sized from handfuls to hundreds of users. By consolidating fast, highly available switching, routing, security, and applications capabilities in a single device, enterprises can economically deliver new services, safe connectivity, and a satisfying end user experience.
FIPS Algorithms
AES |
Certs. #5334, #5337 and #5386 |
CVL |
Certs. #1799 and #1848 |
DRBG |
Cert. #2060 |
ECDSA |
Certs. #1422 and #1435 |
HMAC |
Certs. #3530, #3534 and #3567 |
KTS |
AES Certs. #5337 and #5386 and HMAC Certs. #3534 and #3567; key establishment methodology provides between 128 and 256 bits of encryption strength |
KTS |
Triple-DES Certs. #2697 and #2713 and HMAC Certs. #3534 and #3567; key establishment methodology provides 112 bits of encryption strength |
RSA |
Certs. #2880 and #2894 |
SHS |
Certs. #4284, #4287, #4288 and #4320 |
Triple-DES |
Certs. #2694, #2697 and #2713 |
Allowed Algorithms
Diffie-Hellman (CVL Certs. #1799 and #1848, key agreement; key establishment methodology provides 112 bits of encryption strength); EC Diffie-Hellman (CVL Certs. #1799 and #1848, key agreement; key establishment methodology provides 128 or 192 bits of encryption strength); NDRNG
Firmware Versions
JUNOS 17.4R1-S1