Module Name
Juniper Networks EX2300, EX2300-C and EX3400 Ethernet Switches
Validation Dates
11/17/2020
Caveat
When operated in FIPS mode, installed, initialized and configured as specified in Sections 1.2 and 6 of the Security Policy. The module generates cryptographic keys whose strengths are modified by available entropy.
Security Level Exceptions
- Roles, Services, and Authentication: Level 3
- Design Assurance: Level 3
- Mitigation of Other Attacks: N/A
Embodiment
Multi-Chip Stand Alone
Description
Comprehensive, scalable and secure switching & routing solutions specifically designed to meet the needs of campus, enterprises and service providers. All of our switches & routers - core, Multiservice edge and edge Ethernet - run on one common operating system- Junos
FIPS Algorithms
| AES |
Cert. #C1376 |
| CVL |
Cert. #C1376 |
| DRBG |
Certs. #C1374 and #C1376 |
| ECDSA |
Cert. #C1376 |
| HMAC |
Certs. #C1374, #C1375 and #C1376 |
| KAS-SSC |
vendor affirmed |
| KTS |
AES Cert. #C1376 and HMAC Cert. #C1376; key establishment methodology provides between 128 and 256 bits of encryption strength |
| KTS |
Triple-DES Cert. #C1376 and HMAC Cert. #C1376; key establishment methodology provides 112 bits of encryption strength |
| RSA |
Cert. #C1376 |
| SHS |
Certs. #C1374, #C1375 and #C1376 |
| Triple-DES |
Cert. #C1376 |
Hardware Versions
EX2300-C-12P, EX2300-C-12T, EX2300-24P, EX2300-24T, EX2300-48P, EX2300-48T, EX3400-24P, EX3400-24T, EX3400-48P and EX3400-48T
Firmware Versions
Junos OS 19.1R2