808bits

Junos-FIPS 10.4 L1 OS Cryptographic Module

FIPS 140-2 certificate #1772 · Juniper Networks, Inc. · data as of 2026-09-13

Junos-FIPS 10.4 L1 OS Cryptographic Module, from Juniper Networks, Inc., holds FIPS 140-2 certificate #1772 at overall level 1. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.

Historical. RNG SP800-131A Revision 1 Transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: None

Certificate

Certificate number1772
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeFirmware
EmbodimentMulti-chip embedded
VendorJuniper Networks, Inc. · website
Firmware versions10.4R5

Module description

Quoted from the NIST CMVP entry for this certificate.

Juniper Networks M7i and M10i routing platforms are complete routing systems that support a variety of high-speed interfaces for medium/large networks and network applications and numerous routing standards. All platforms are physically self-contained, housing software, firmware, and hardware necessary for routing. The router architecture provides for streamlined forwarding and routing control and the capability to run Internet-scale networks at high speeds. They are powered by the same JUNOS software which provides both management and control functions as well as all IP routing.

Security level exceptions

  • Roles, Services, and Authentication: Level 2
  • Design Assurance: Level 3
  • Tested: RE-850-1536 [M7i] and RE-850-1536 [M10i]

Approved algorithms (8)

AlgorithmCAVP certificates
AES1719, 1726, 1727
DSA531
ECDSA225
HMAC994, 1000, 1001, 1002
RNG909
RSA847
SHS1502, 1508, 1509, 1510
Triple-DES1106, 1112, 1113

Other algorithms

MD5; Diffie-Hellman (key agreement; key establishment methodology provides 80 bits of encryption strength; non-compliant); RSA (key wrapping; key establishment methodology provides 80 bits of encryption strength; non-compliant)

Validation history

DateTypeLab
2012-07-31InitialCYGNACOM SOLUTIONS INC

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2012-07-31

Source documents