Module Name
Juniper FIPS Provider
Caveat
When operated in FIPS mode. No assurance of the minimum strength of generated keys.
Security Level Exceptions
- Physical Security: N/A
- Design Assurance: Level 3
Embodiment
Multi-Chip Stand Alone
Description
The Juniper FIPS Provider is a software library providing a C-language application program interface (API) for use by applications that require cryptographic functionality.
Tested Configuration(s)
- Debian 11.5 running on Dell Inspiron 7591 with Intel i7(x86) with PAA
- Debian 11.5 running on Dell Inspiron 7591 with Intel i7(x86) without PAA
- FreeBSD 13.1 running on Dell Inspiron 7591 with Intel i7(x64) with PAA
- FreeBSD 13.1 running on Dell Inspiron 7591 with Intel i7(x64) without PAA
- macOS 11.5.2 running on Apple i7 Mac Mini with Intel i7(x64) with PAA
- macOS 11.5.2 running on Apple i7 Mac Mini with Intel i7(x64) without PAA (single-user mode)
- Ubuntu Linux 22.04.1 LTS running on Dell Inspiron 7591 with Intel i7(x64) with PAA
- Ubuntu Linux 22.04.1 LTS running on Dell Inspiron 7591 with Intel i7(x64) without PAA
- Windows 10 running on Dell Inspiron 7591 with Intel i7(x64) with PAA
- Windows 10 running on Dell Inspiron 7591 with Intel i7(x64) without PAA
Approved Algorithms
AES |
Cert. #A3500 |
CKG |
vendor affirmed |
CVL |
Cert. #A3500 |
DRBG |
Cert. #A3500 |
DSA |
Cert. #A3500 |
ECDSA |
Cert. #A3500 |
HMAC |
Cert. #A3500 |
KAS-RSA-SSC |
Cert. #A3500 |
KAS-SSC |
Cert. #A3500 |
KBKDF |
Cert. #A3500 |
KDA |
Cert. #A3500 |
KMAC |
Cert. #A3500 |
KTS |
AES Cert. #A3500; key establishment methodology provides between 128 and 256 bits of encryption strength |
KTS |
AES Cert. #A3500 and AES Cert. #A3500; key establishment methodology provides between 128 and 256 bits of encryption strength |
KTS |
AES Cert. #A3500 and HMAC Cert. #A3500; key establishment methodology provides between 128 and 256 bits of encryption strength |
KTS |
Triple-DES Cert. #A3500 and HMAC Cert. #A3500; key establishment methodology provides 112 bits of encryption strength |
KTS-RSA |
Cert #A3500; key establishment methodology provides between 112 and 192 bits of encryption strength |
PBKDF |
Cert. #A3500 |
RSA |
Cert. #A3500 |
SHA-3 |
Cert. #A3500 |
SHS |
Cert. #A3500 |
Triple-DES |
Cert. #A3500 |