808bits

SSG 5 and SSG 20

FIPS 140-2 certificate #1170 · Juniper Networks, Inc. · data as of 2026-08-28
Historical. RNG SP800-131A Revision 1 Transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode

Certificate

Certificate number1170
StandardFIPS 140-2
Statushistorical
Overall level2
Module typeHardware
EmbodimentMulti-chip standalone
VendorJuniper Networks, Inc. · website
Hardware versionsP/Ns SSG-5 (SSG 5) and SSG-20 (SSG 20)
Firmware versionsScreenOS 6.2.0r3

Module description

The SSG 5 and SSG 20 are high-performance security platforms for small branch office and standalone businesses that want to stop internal and external attacks, prevent unauthorized access and achieve regulatory compliance. Both the SSG 5 and SSG 20 deliver 160 Mbps of stateful firewall traffic and 40 Mbps of IPSec VPN traffic.

Security level exceptions

  • Cryptographic Module Specification: Level 3
  • Cryptographic Module Ports and Interfaces: Level 3
  • Roles, Services, and Authentication: Level 3
  • Cryptographic Key Management: Level 3
  • Design Assurance: Level 3

Approved algorithms

AlgorithmCAVP certificate
AES866, 870
DSA314, 318
ECDSA103, 107
HMAC482, 486
RNG496, 500
RSA417, 421
SHS860, 864
Triple-DES711, 715

Other algorithms

Diffie-Hellman (key agreement; key establishment methodology provides 112 bits of encryption strength; non-compliant less than 112 bits of encryption strength); DES; MD5

Validation history

DateTypeLab
2009-08-18InitialUL Verification Services, Inc.
2010-01-28Update
2013-12-11Update

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2009-08-18, 2010-01-28, 2013-12-11

Source documents