Cisco 7606 Manuel de l'utilisateur - Page 26
Parcourez en ligne ou téléchargez le pdf Manuel de l'utilisateur pour {nom_de_la_catégorie} Cisco 7606. Cisco 7606 28 pages. User guide
Également pour Cisco 7606 : Brochure (8 pages)
Secure Operation of the Catalyst 6509 Switch and the Cisco 7606 and Cisco 7609 Routers
•
VPN Services Module (Cryptographic Accelerator) Self-Tests
•
•
Secure Operation of the Catalyst 6509 Switch and the
Cisco 7606 and Cisco 7609 Routers
The Catalyst 6509 switch and the Cisco 7606 router and the Cisco 7609 router with the VPN Services
Module meets all the Level 2 requirements for FIPS 140-2. Follow the setting guidelines provided in the
following sections to place the module in a FIPS-approved mode of operation. Operating this router or
switch without maintaining the following settings will remove the module from the FIPS-approved mode
of operation.
Initial Setup
Before configuring the router or switch, note these requirements:
•
•
•
•
Catalyst 6509 Switch, Cisco 7606 Router, and Cisco 7609 Router with VPN Services Module Certification Note
26
PRNG KAT
–
Power-up bypass test
–
Diffie-Hellman self-test
–
HMAC SHA-1 KAT
–
Conditional tests
Conditional bypass test
–
Pair-wise consistency test on RSA signature
–
Continuous random number generator tests
–
Power-up tests
Firmware integrity test
–
DES KAT
–
TDES KAT
–
–
SHA-1 KAT
Conditional tests
–
Continuous random number generator test
The crypto officer must ensure that the VPN Services Module cryptographic accelerator card is
installed in the chassis by visually confirming the presence of the VPN Services Module.
The crypto officer must apply tamper evidence labels as described in the
on page 18
of this document.
Only the crypto officer may add and remove network modules. When removing the tamper evidence
label, the crypto officer should remove the entire label from the chassis and clean the cover of any
grease, dirt, or oil with an alcohol-based cleaning pad. The crypto officer must reapply tamper
evidence labels on the router as described in the
The crypto officer must apply the opacity shield as described in the
page
18of this document.
"Physical Security" section
"Physical Security" section on page
"Physical Security" section on
18.
OL-6334-01