808bits

Cisco ASR 9000 Aggregated Services Routers

FIPS 140-2 certificate #4516 · Cisco Systems, Inc. · data as of 2026-08-28
Active. Sunset date 2026-09-21, 23 days away. This is the FIPS 140-2 sunset: after it, agencies may keep the module only in existing systems.
Caveat: When operated in FIPS mode. This module contains the embedded module ACT2Lite validated to FIPS 140-2 under Cert. #3637 operating in FIPS mode.

Certificate

Certificate number4516
StandardFIPS 140-2
Statusactive
Sunset date2026-09-21
Overall level1
Module typeHardware
EmbodimentMulti-Chip Stand Alone
VendorCisco Systems, Inc. · website
Hardware versions[ASR-9006-SYS with components A9K-RSP5-TR, A9K-RSP880-TR, A9K-16X100GE-TR], [ASR-9010-SYS with components A9K-RSP5-TR, A9K-RSP880-TR, A9K-16X100GE-TR], ASR-9901, [ASR-9904 with components A9K-RSP5-TR, A9K-RSP880-TR, A9K-16X100GE-TR, A99-8X100GE-TR, A99-12X100GE, A99-32X100GE-TR], [ASR-9906 with components A9K-RSP5-TR, A9K-16X100GE-TR, A99-8X100GE-TR, A99-12X100GE, A99-32X100GE-TR], [ASR-9910 with components A9K-RSP5-TR, A9K-16X100GE-TR, A99-8X100GE-TR, A99-12X100GE, A99-32X100GE-TR], [ASR-9912 with components A99-RP3-TR, A9K-16X100GE-TR, A99-8X100GE-TR, A99-12X100GE, A99-32X100GE-TR] and [ASR-9922 with components A99-RP3-TR, A9K-16X100GE-TR, A99-8X100GE-TR, A99-12X100GE, A99-32X100GE-TR]
Firmware versionsIOS-XR 7.1.2

Module description

The Cisco ASR 9000 Aggregated Services Routers accelerate services by offering performance and resiliency with optimized, intelligent services; establishing a benchmark for price-to-performance offerings in the enterprise routing, service provider edge, and broadband aggregation segments; facilitating significant network innovations in areas such as secure WAN aggregation, managed customer-premises-equipment services, and service provider edge services; reducing operating expenses and capital expenditures by facilitating managed or hosted services over identical architectures and operating env

Security level exceptions

  • Roles, Services, and Authentication: Level 3
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AESA2414
CKGvendor affirmed
CVLA2414
DRBGA2414
ECDSAA2414
HMACA2414
KAS
KAS-SSCA2414
KTS
RSAA2414
SHSA2414

Allowed algorithms

NDRNG; RSA (key wrapping; key establishment methodology provides 112 or 128 bits of encryption strength)

Tested configurations

  • N/A

Validation history

DateTypeLab
2023-05-08InitialAcumen Security

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status active
  • Validation dates on record: 2023-05-08

Source documents