Module Name
Juniper Networks NFX250 Network Services Platform
Caveat
When operated in FIPS mode, installed, initialized and configured as specified in Sections 1.2 and 6 of the Security Policy
Security Level Exceptions
- Roles, Services, and Authentication: Level 3
- Design Assurance: Level 3
- Mitigation of Other Attacks: N/A
Embodiment
Multi-Chip Stand Alone
Description
The NFX250 Network Services Platform provides multiple network connections and an open, standards-based architecture. It uses SRX Series next-generation firewall software for security. The NFX250 delivers business services, such as SD-WAN. It is for enterprise organizations and for service providers that deliver managed services to the enterprise.
FIPS Algorithms
| AES |
Certs. #C1979, #C1981 and #C2042 |
| CVL |
Certs. #C1978 and #C2042 |
| DRBG |
Certs. #C1981, #C1983 and #C2042 |
| ECDSA |
Certs. #C1981 and #C2042 |
| HMAC |
Certs. #C1979, #C1981, #C1982, #C1983 and #C2042 |
| KAS-SSC |
vendor affirmed |
| KTS |
AES Certs. #C1981 and #C2042 and HMAC Certs. #C1981 and #C2042; key establishment methodology provides between 128 and 256 bits of encryption strength |
| KTS |
Triple-DES Certs. #C1981 and #C2042 and HMAC Certs. #C1981 and #C2042; key establishment methodology provides 112 bits of encryption strength |
| RSA |
Certs. #C1981 and #C2042 |
| SHS |
Certs. #C1979, #C1981, #C1982, #C1983 and #C2042 |
| Triple-DES |
Certs. #C1979, #C1981 and #C2042 |
Hardware Versions
NFX250-S1, NFX250-S1E and NFX250-S2
Firmware Versions
Junos OS 20.1R1