Junos® OS Evolved MACsec Cryptographic Library
Caveat: Interim validation. When operated with module Junos® OS Evolved OpenSSL Cryptographic Module version 3.0.8 validated to FIPS 140-3 under Cert. #4775 in approved mode, and module Junos® OS Evolved Kernel Cryptographic Module version 2.0 validated to FIPS 140-3 under Cert. #4776, operating in approved mode. When installed, initialized and configured as specified in Section 11 of the Security Policy. The module generates random strings whose strength is modified by available entropy
Certificate
| Certificate number | 4820 |
|---|---|
| Standard | FIPS 140-3 |
| Status | historical |
| Overall level | 1 |
| Module type | Software |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Juniper Networks, Inc. · website |
| Software versions | 1.2 |
Module description
Junos® OS Evolved MACsec Cryptographic Library is a shared library in software, which provides cryptographic services for key wrapping, key derivation and random number generation.
Security level exceptions
- Physical security: N/A
- Non-invasive security: N/A
- Mitigation of other attacks: N/A
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES-CMAC | A4156 |
| AES-ECB | A4156 |
| AES-KW | A4156 |
| HMAC DRBG | A3599 |
| HMAC DRBG | A3600 |
| HMAC DRBG | A3601 |
| HMAC DRBG | A3603 |
| HMAC DRBG | A3604 |
| HMAC DRBG | A3605 |
| HMAC-SHA2-256 | A4246 |
| HMAC-SHA2-256 | A4247 |
| HMAC-SHA2-256 | A4248 |
| HMAC-SHA2-256 | A4249 |
Tested configurations
- Junos® OS Evolved 22.4 running on Juniper Networks® Packet Transport Router Model PTX10001-36MR with Intel® Xeon® D-2163IT without PAA
Validation history
| Date | Type | Lab |
|---|---|---|
| 2024-10-02 | Initial | atsec information security corporation |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2024-10-02