Juniper Networks EX2300, EX2300-C and EX3400 Ethernet Switches
Caveat: When operated in FIPS mode, installed, initialized and configured as specified in Sections 1.2 and 6 of the Security Policy. The module generates cryptographic keys whose strengths are modified by available entropy.
Certificate
| Certificate number | 3744 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 1 |
| Module type | Hardware |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Juniper Networks, Inc. · website |
| Hardware versions | EX2300-C-12P, EX2300-C-12T, EX2300-24P, EX2300-24T, EX2300-48P, EX2300-48T, EX3400-24P, EX3400-24T, EX3400-48P and EX3400-48T |
| Firmware versions | Junos OS 19.1R2 |
Module description
Comprehensive, scalable and secure switching & routing solutions specifically designed to meet the needs of campus, enterprises and service providers. All of our switches & routers - core, Multiservice edge and edge Ethernet - run on one common operating system- Junos
Security level exceptions
- Roles, Services, and Authentication: Level 3
- Design Assurance: Level 3
- Mitigation of Other Attacks: N/A
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | C1376 |
| CVL | C1376 |
| DRBG | C1374, C1376 |
| ECDSA | C1376 |
| HMAC | C1374, C1375, C1376 |
| KAS-SSC | vendor affirmed |
| KTS | |
| KTS | |
| RSA | C1376 |
| SHS | C1374, C1375, C1376 |
| Triple-DES | C1376 |
Allowed algorithms
NDRNG
Tested configurations
- N/A
Validation history
| Date | Type | Lab |
|---|---|---|
| 2020-11-17 | Initial | Acumen Security |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2020-11-17