2
FIPS 140-2, Common Criteria Certifications, and DISA UC APL Entry for Cisco Catalyst Switches CERTIFICATIONS NOTIFICATION November 2012 DoD Unified Capabilities Approved Products List (UC APL) The U.S. DoD requires that all network devices that provide or support unified capabilities be certified for both interoperability and information assurance. The products on the UC APL are UC-certified by the Joint Interoperability Test Command (JITC) and information assurance-accredited by the designated accrediting authorities, allowing them to connect to the Defense Information Systems Network (DISN) and Defense Department networks. The Common Criteria Standard The Common Criteria for Information Technology Security Evaluation is an international standard (ISO/IEC 15408) that is mutually recognized by 26 countries as a consistent means of evaluating and certifying product security. Evaluations are performed by independent commercial labs and certified by the certificate-issuing country. Many government and enterprise organizations around the world, including the U.S., consider Common Criteria a mandatory requirement for purchasing network security or products that provide security functions. In the US, the certifying authority is the National Information Assurance Program (NIAP), which is part of the NSA. Benefits and Features Cisco Catalyst 3750-X and 3650-X Series Switches are enterprise-class stackable switches that provide high availability, scalability, security, energy efficiency, and ease of operation with innovative features such as Cisco StackPower, Power over Ethernet Plus (PoE+), optional network modules, redundant power supplies, and MAC security. The stackable architecture of the Catalyst 3000 switch series allows it to cost-effectively address a wide spectrum of applications. The Cisco® Catalyst 3560-X and 3750-X Series Switch, running IOS Version 15.0(1) SE2; and the Catalyst 6500 Series Switch, running IOS Version 15.0(1) SY1, have both been certified as meeting the U.S. Federal Information Process Standard (FIPS 140-2) for cryptography at Security Level 2. Both families of switches have also been awarded an entry on the U.S. Department of Defense (DoD) Unified Capabilities Approved Products List (UC APL) by the Defense Information Systems Agency (DISA).as an Assured Services Local Area Network (ASLAN) Layer 2/ Layer 3 Access, Core, and Distribution switch as required by the U.S. Department of Defense Unified Capabilities Requirements (UCR). Both families of switches have also been awarded Common Criteria Certification from the National Information Assurance Partnership (NIAP). They have achieved evaluation assurance level 2 (EAL 2), against Common Criteria version 3.1 rev 3. See details of the certifications and validation reports: Catalyst 3560-X and 3750-X Series Switch (FIPS) Catalyst 3560 and 3750-X Series Switch (Common Criteria) Catalyst 6500 Series Switch (FIPS) Catalyst 6500 Series Switch (Common Criteria) Catalyst 3560-X, 3750-X, and 6500 Switch (UC APL) These products are fully certified for use by U.S. government and enterprise customers. The FIPS 140-2 Cryptography Certification The U.S. government requirements for cryptography are documented by the National Institute of Standards and Technology (NIST), a branch of the US Commerce Department. FIPS 140-2, issued on May 25, 2001, is the most current version of the standard. In the DoD, customers are now asking for FIPS validation for all products. Requirements include implementation of FIPS- approved algorithms, specific management of the key lifecycle, approved generation of random numbers, and self-testing.

FIPS 140-2, Common Criteria Certifications, and DISA UC APL Entry for Cisco Catalyst Switches

Embed Size (px)

DESCRIPTION

Cisco is committed to maintaining an active product certification and evaluation program for governments globally. These efforts include Common Criteria and cryptographic algorithm implementation validation such as FIPS, as well as efforts associated with Approved Products List (APLs) for global governments, including DISA and NATO's information Assurance Product Catalog (NIAPC).

Citation preview

Page 1: FIPS 140-2, Common Criteria Certifications, and DISA UC APL Entry for Cisco Catalyst Switches

FIPS 140-2, Common Criteria Certifications, and DISA UC APL Entry for Cisco Catalyst Switches

CertifiCations notifiCation

november 2012

DoD Unified Capabilities Approved Products List (UC APL)The U.S. DoD requires that all network devices that provide or support unified capabilities be certified for both interoperability and information assurance. The products on the UC APL are UC-certified by the Joint Interoperability Test Command (JITC) and information assurance-accredited by the designated accrediting authorities, allowing them to connect to the Defense Information Systems Network (DISN) and Defense Department networks.

The Common Criteria StandardThe Common Criteria for Information Technology Security Evaluation is an international standard (ISO/IEC 15408) that is mutually recognized by 26 countries as a consistent means of evaluating and certifying product security. Evaluations are performed by independent commercial labs and certified by the certificate-issuing country. Many government and enterprise organizations around the world, including the U.S., consider Common Criteria a mandatory requirement for purchasing network security or products that provide security functions. In the US, the certifying authority is the National Information Assurance Program (NIAP), which is part of the NSA.

Benefits and FeaturesCisco Catalyst 3750-X and 3650-X Series Switches are enterprise-class stackable switches that provide high availability, scalability, security, energy efficiency, and ease of operation with innovative features such as Cisco StackPower, Power over Ethernet Plus (PoE+), optional network modules, redundant power supplies, and MAC security. The stackable architecture of the Catalyst 3000 switch series allows it to cost-effectively address a wide spectrum of applications.

The Cisco® Catalyst 3560-X and 3750-X Series Switch, running IOS Version 15.0(1) SE2; and the Catalyst 6500 Series Switch, running IOS Version 15.0(1) SY1, have both been certified as meeting the U.S. Federal Information Process Standard (FIPS 140-2) for cryptography at Security Level 2. Both families of switches have also been awarded an entry on the U.S. Department of Defense (DoD) Unified Capabilities Approved Products List (UC APL) by the Defense Information Systems Agency (DISA).as an Assured Services Local Area Network (ASLAN) Layer 2/Layer 3 Access, Core, and Distribution switch as required by the U.S. Department of Defense Unified Capabilities Requirements (UCR).Both families of switches have also been awarded Common Criteria Certification from the National Information Assurance Partnership (NIAP). They have achieved evaluation assurance level 2 (EAL 2), against Common Criteria version 3.1 rev 3.See details of the certifications and validation reports:•Catalyst 3560-X and 3750-X Series Switch (FIPS)•Catalyst 3560 and 3750-X Series Switch

(Common Criteria)•Catalyst 6500 Series Switch (FIPS)•Catalyst 6500 Series Switch (Common Criteria)•Catalyst 3560-X, 3750-X, and 6500 Switch (UC APL)

These products are fully certified for use by U.S. government and enterprise customers.

The FIPS 140-2 Cryptography CertificationThe U.S. government requirements for cryptography are documented by the National Institute of Standards and Technology (NIST), a branch of the US Commerce Department. FIPS 140-2, issued on May 25, 2001, is the most current version of the standard. In the DoD, customers are now asking for FIPS validation for all products. Requirements include implementation of FIPS-approved algorithms, specific management of the key lifecycle, approved generation of random numbers, and self-testing.

Page 2: FIPS 140-2, Common Criteria Certifications, and DISA UC APL Entry for Cisco Catalyst Switches

FIPS 140-2, Common Criteria Certifications, and DISA UC APL Entry for Cisco Catalyst Switches

CertifiCations notifiCation

november 2012

Americas HeadquartersCisco Systems, Inc.San Jose, CA

Asia Pacific HeadquartersCisco Systems (USA) Pte. Ltd.Singapore

Europe HeadquartersCisco Systems International BV Amsterdam, The Netherlands

Cisco has more than 200 offices worldwide. Addresses, phone numbers, and fax numbers are listed on the Cisco Website at www.cisco.com/go/offices.

Cisco and the Cisco logo are trademarks or registered trademarks of Cisco and/or its affiliates in the U.S. and other countries. To view a list of Cisco trademarks, go to this URL: www.cisco.com/go/trademarks. Third party trademarks mentioned are the property of their respective owners. The use of the word partner does not imply a partnership relationship between Cisco and any other company. (1110R) C25-720911-00 11/12

Cisco and the Cisco logo are trademarks or registered trademarks of Cisco and/or its affiliates in the U.S. and other countries. To view a list of Cisco trademarks, go to this URL: www.cisco.com/go/trademarks. Third party trademarks mentioned are the property of their respective owners. The use of the word partner does

not imply a partnership relationship between Cisco and any other company. (1110R)

Americas HeadquartersCisco Systems, Inc.San Jose, CA

Asia Pacific HeadquartersCisco Systems (USA) Pte. Ltd.Singapore

Europe HeadquartersCisco Systems International BV Amsterdam, The Netherlands

Cisco has more than 200 offices worldwide. Addresses, phone numbers, and fax numbers are listed on the Cisco Website at www.cisco.com/go/offices.

Cisco invests millions of dollars annually in the government product certification process to meet the rigorous standards set forth by DISA, the National Institute of Standards and Technologies (NIST), and the Common Criteria community.

For More InformationFor more information on the FIPS 140-2 certification, please refer to the NIST website. For more information on the Common Criteria certification, please refer to the Common Criteria website. For more information on the UC APL entry, please refer to the DISA website.For more on Cisco’s Catalyst 3000 Series and Catalyst 6500 Series switches, contact your local account representative or visit the Cisco.com website to learn more. To learn how Cisco is leading the way in U.S. government certifications, visit our Certifications webpage or contact your Cisco account representative at 1-866-426-7659 in the United States and Canada.

The Catalyst 6500 series switches offer a high-performance, feature-rich platform suitable for deployment in campus, data center, WAN, and Metro Ethernet networks. With numerous network modules and service modules available, the modular architecture of the Cisco switches easily allows interfaces to be upgraded to accommodate network expansion. The Catalyst 6500 series switches provide a scalable, secure, manageable remote access server that meets FIPS 140-2 Level 2 requirements.

Cisco’s Certification CommitmentCisco is committed to maintaining an active product certification and evaluation program for governments globally. These efforts include Common Criteria and cryptographic algorithm implementation validation such as FIPS, as well as efforts associated with Approved Products Lists (APLs) for global governments, including DISA and NATO’s Information Assurance Product Catalog (NIAPC).We recognize that certifications and evaluations are important to our global customers. Cisco is the recognized leader in government certifications, with more product certifications than any other commercial IT vendor in the world.