TM ASSURANCE CONTINUITY MAINTENANCE REPORT FOR BROCADE COMMUNICATIONS SYSTEMS MLXe AND NetIron FAMILY DEVICES WITH Multi-Service IronWare R06.0.

Size: px
Start display at page:

Download "TM ASSURANCE CONTINUITY MAINTENANCE REPORT FOR BROCADE COMMUNICATIONS SYSTEMS MLXe AND NetIron FAMILY DEVICES WITH Multi-Service IronWare R06.0."

Transcription

1 TM ASSURANCE CONTINUITY MAINTENANCE REPORT FOR BROCADE COMMUNICATIONS SYSTEMS MLXe AND NetIron FAMILY DEVICES WITH Multi-Service IronWare R Maintenance Update of Brocade Communication Systems Brocade MLXe and NetIron Family Devices with Multi-Service IronWare R Maintenance Report Number: CCEVS-VR-VID Date of Activity: 01 September 2016 References: Common Criteria Evaluation and Validation Scheme Publication #6, Assurance Continuity: Guidance for Maintenance and Re-evaluation, version 2.0, 8 September 2008; Impact Analysis Report for Brocade MLXe Family Devices with Multi- Service IronWare R (NDPP11E3.VPNGEP11), Revision 1.0, August 24, 2016 Documentation reported as being updated: Brocade MLXe Family Devices with Multi-Service IronWare R (NDPP11E3/VPNGEP11) Security Target, Version 1.0, 08/24/16; Brocade NetIron FIPS and Common Criteria Configuration Guide, Supporting Multi- Service Ironware R aa, , 18 May 2016; Brocade NetIron Monitoring Configuration Guide, Supporting NetIron OS , , 29 April 2016; Brocade NetIron Management Configuration Guide Supporting NetIron OS , , 29 April 2016; and Brocade NetIron Security Configuration Guide Supporting NetIron OS , , 29 April 2016 Assurance Continuity Maintenance Report: Gossamer Security Solutions, on behalf of Brocade Communications Systems, Inc., submitted an Impact Analysis Report (IAR) to Common Criteria Evaluation Validation Scheme (CCEVS) for approval on 24 August The IAR is intended to satisfy requirements outlined in Common Criteria Evaluation and Validation Scheme Publication #6, Assurance Continuity: Guidance for Maintenance and Re-evaluation, version 2.0. In accordance with those requirements, the IAR describes the changes made to the certified TOE, the evidence updated as a result of the changes and the security impact of the changes.

2 The IAR identifies the changes to the TOE included updating the operating system to NetIron , adding new non-security features, providing enhanced support for IPsec, and various bug fixes. The new non-security features were considered to be outside the scope of the NDPP/VPNGW IPsec changes were assessed and none were considered to be security relevant. NetIron was also revised to fix a number of bugs. These changes are also determined to be outside the scope of the original The evaluation evidence consists of the Security Target, Impact Analysis Report (IAR), and release notes. The Security Target was revised to reflect the new software version. The IAR and release notes were new. Note that Brocade continually tracks bugs, vulnerabilities, and other defects reported in the public domain and at the time of this report there are no known outstanding security-related vulnerabilities in the TOE. Changes to TOE: The Target of Evaluation (TOE) is the Brocade Communication Systems, Inc Brocade MLXe Family Devices with Multi-Service IronWare R and includes a various series and models. The TOE is composed of a hardware appliance with embedded software installed on a management processor. The embedded software is a version of Brocades' proprietary Multi-Service IronWare software. The software controls the switching and routing network frames and packets among the connections available on the hardware appliances. The TOE has been revised from the evaluated IronWare R aa to IronWare version R There were no changes to the hardware platforms. Non-security relevant software changes have also been made and are documented in the NI OS for Brocade MLXe and NetIron Release Notes v3.0, May 27, The changes are summarized below. NetIron Software Updates: The TOE software was updated from version aa to version R and no hardware changes were made to the evaluated configuration. The software updates included new nonsecurity relevant features and bug fixes. The software updates and their effects and relevance are summarized below: 1. Support for IPsec Security Consideration L2 over IPsec The feature provides secure point to point layer 2 extension over WAN. The layer 2 traffic is encrypted by IPsec tunnels using the most advanced Suite-B security protocols. This is not security relevant because the claimed and tested VPN functionality remains the same. This is an extension to the already evaluated function.

3 ICX IPsec interoperability - ICX and MLXe have been tested to interoperate in the same IPsec tunnels for secure VPN connection for enterprise vrouter IPsec interoperability - vrouter and MLXe have been tested to interoperate in the same IPsec tunnels for secure VPN connection between enterprise data center and public cloud for hybrid cloud use case. Track IPsec tunnels for VRRP failover - If the IPsec tunnel goes down, the VRRP / VRRPe priority will decrement and trigger the failover the VRRP / VRRPe peers. Option to display IKEv2 debug for a particular IPsec tunnel - The debug option displays IKEv2 debug logs for a specific IPSec tunnel as configured by the user. The debug logs are as per the currently supported debug logs such as trace, event, error, packet et cetera ICX is an additional hardware line at Brocade. The hardware is not being added to the evaluated configuration. vrouters were not considered in the original As such the VRouter functionality is outside the scope of the NDP/VPNGWP evaluation Failover was not considered in the original As such the failover functionality is outside the scope of the NDP/VPNGWP This is not security relevant because the claimed and tested VPN functionality remains the same. This is an extension to the already evaluated IKEv2 function. 2. New non-security features Security Consideration Software-defined Network (SDN) Path Computing Element Communication Protocol (PCEP) - Path Computing Element (PCE) is SDN based solution for MPLS traffic engineering. OpenFlow to MPLS LSP as logical port - MPLS LSP tunnels are supported in OpenFlow as logical ports. Network Packet Broker enhancements Increase traffic streams to 6K Increase L2 and L3 ACL to 4K SNMP monitoring support L2 High/low watermark thresholds for traffic statistics IPv6 ACL.1p match BGP diverse path BGP Add-Path - This enables router to advertise multiple paths for the same prefix for multi-pathing and faster convergence. PCEP and OpenFlow are outside the scope of the NDPP These enhancements deal with performance issues and are outside the scope of the NDPP The router path enhancements are outside the scope of the NDPP

4 BGP Best External - The router can advertise the best external BGP path to the BGP neighbors even when it receives a better internal BGP route. This enable multiple exit paths to other AS GRE enhancements GRE tunnel bypassing ACL GRE tunnel to hand off to IPv6 over IPv4 IPv6 enhancements - IPv6 for VE over VPLS IPv6 ACL deny logging IPv6 ACL per SNMP server group New Optics - 40G Bi-Di QSFP 40G Bi-Di QSFP+ optics is now supported on the MLXe 4- port 40G line card. RADIUS over TCP / TLS Radius connection will be sent over TCP (RFC 6613) and also over TLS (RFC 6614) to provide encrypted RADIUS. Performance enhancement Several changes were made to improve performance including faster routing, load balancing, CPU usage, and configurable delays. Additional show commands Several additional commands have been added to provide the administrator more information The routing tunnel functionality is outside the scope of the NDPP The ACL and routing functionality is outside the scope of the NDPP The interface type does not affect the security claimed in the NDPP Using RADIUS over TLS is a topic of the NDPP. However, the NetIron evaluation did not include this requirement. Brocade intends to address this as part of future Since there are no requirements in the ST, this does not apply to the security posture of the existing Performance enhancements are outside the scope of the NDPP The administrator is required to authenticate before performing any management. All necessary management commands were evaluated in the original Additional commands are an enhancement to the administrator but not necessary for the NDPP Security considerations for bug fixes: There are several bugs identified as being part of the security group. The analysis documented below analyzes each of the bug fixes with regard to the effect on Common Criteria certification of the TOE. Bug Description ACLRelated bugs There are several ACL related bugs. The NDPP does not address ACL related

5 MAC/802.1x Port-based Authentication Related bugs Policy based routing SSH Bad client version string" error is reported when backing up MLX configuration via SCP through BNA. SSH Device may unexpectedly reload during SSH access SSH - Unexpected reload of Management module when copying multiple L2 ACL configuration files using SCP/ Tftp://ftp SSH - Device may unexpectedly reload when a SSH client is attempting to login to it. SSH - The SSH session terminates unexpectedly when running "show tech- support" command MACsec - Media Access Control security - When delete-dynamic-learn" is enabled under "globalport-security", MAC addresses learnt on a PMS enabled LAG member port do not get deleted after the corresponding interface flaps. IPsec Bug fixes functionality so these bugs are not security relevant in the context of the NDPP Port-based authentication is outside the scope of the NDPP Policy based routing is outside the scope of the NDPP evaluation MACsec is outside the scope of the NDPP There are several IPsec related bug fixes. These fixes address SFlow configurations, tunnel disconnects, delays, displaying parameters, configuration issues, interoperability with 3 rd parties, and performance issues. These bug fixes do not dirty address an NDPP/VPNGW functionality. Conclusion: CCEVS reviewed the description of the changes and the analysis of the impact upon security, and found them all to be minor. In addition, the CCTL reported having conducted a vulnerability search update that located no new vulnerabilities. Further, it was also reported that the Vendor did regression testing and that the changes, collectively, had no security impact on the TOE. Therefore, CCEVS agrees that the original assurance is maintained for the product.

Brocade MLXe Family Devices with Multi- Service IronWare R

Brocade MLXe Family Devices with Multi- Service IronWare R National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme TM Validation Report Brocade Communication Systems, Inc 130 Holger Way San Jose, CA 95134 Brocade MLXe Family

More information

ASSURANCE CONTINUITY MAINTENANCE REPORT FOR ARUBA MOBILITY CONTROLLER AND ACCESS POINT SERIES

ASSURANCE CONTINUITY MAINTENANCE REPORT FOR ARUBA MOBILITY CONTROLLER AND ACCESS POINT SERIES ASSURANCE CONTINUITY MAINTENANCE REPORT FOR ARUBA MOBILITY CONTROLLER AND ACCESS POINT SERIES TM Maintenance Update of Aruba Mobility Controller and Access Point Series, (ArubaOS version 6.4.3.0-FIPS)

More information

CCEVS APPROVED ASSURANCE CONTINUITY MAINTENANCE REPORT

CCEVS APPROVED ASSURANCE CONTINUITY MAINTENANCE REPORT TM ASSURANCE CONTINUITY MAINTENANCE REPORT FOR Aruba Remote Access Points Maintenance Update of Aruba Remote Access Points Maintenance Report Number: CCEVS-VR-VID10766-2017a Date of Activity: September

More information

Brocade MLXe and NetIron Family Devices with Multi-Service IronWare R

Brocade MLXe and NetIron Family Devices with Multi-Service IronWare R National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme Validation Report Brocade Communications Systems, Inc. Brocade MLXe and NetIron Family Devices with Multi-Service

More information

Brocade FastIron SX, ICX, and FCX Series Switch/Router

Brocade FastIron SX, ICX, and FCX Series Switch/Router National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme TM Validation Report Brocade Communications Systems, Inc. 130 Holger Way San Jose, CA 95134 Brocade FastIron

More information

Brocade FastIron SX, ICX, and FCX Series Switch/Router

Brocade FastIron SX, ICX, and FCX Series Switch/Router National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme TM Validation Report Brocade Communications Systems, Inc. 130 Holger Way San Jose, CA 95134 Brocade FastIron

More information

ASSURANCE CONTINUITY MAINTENANCE REPORT FOR. Microsoft Windows 10 IPsec VPN Client (VPNPP14)

ASSURANCE CONTINUITY MAINTENANCE REPORT FOR. Microsoft Windows 10 IPsec VPN Client (VPNPP14) TM ASSURANCE CONTINUITY MAINTENANCE REPORT FOR Microsoft Windows 10 IPsec VPN Client (VPNPP14) Microsoft Windows 10 IPsec VPN Client (VPNPP14) Maintenance Report Number: CCEVS-VR-VID10753-2017a Date of

More information

TM ASSURANCE CONTINUITY MAINTENANCE REPORT FOR Samsung Electronics Co., Ltd. Samsung Galaxy Devices with Android 6 (MDFPP20)

TM ASSURANCE CONTINUITY MAINTENANCE REPORT FOR Samsung Electronics Co., Ltd. Samsung Galaxy Devices with Android 6 (MDFPP20) TM ASSURANCE CONTINUITY MAINTENANCE REPORT FOR Samsung Electronics Co., Ltd. Samsung Galaxy Devices with Android 6 (MDFPP20) Maintenance Update of Samsung Electronics Co., Ltd. Samsung Galaxy Devices with

More information

ASSURANCE CONTINUITY MAINTENANCE REPORT FOR IAS Router

ASSURANCE CONTINUITY MAINTENANCE REPORT FOR IAS Router ASSURANCE CONTINUITY MAINTENANCE REPORT FOR Maintenance Update of Maintenance Report Number: CCEVS-VR-VID10625-2015a Date of Activity: 18 January 2017 References: Common Criteria document CCIMB-2004-02-009

More information

Brocade FastIron Switch/Router with IPsec VPN Module

Brocade FastIron Switch/Router with IPsec VPN Module National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme TM Validation Report Brocade Communications Systems, Inc. 130 Holger Way San Jose, CA 95134 USA Brocade FastIron

More information

Brocade FastIron Switch/Router

Brocade FastIron Switch/Router National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme TM Validation Report Brocade Communications Systems, Inc. 130 Holger Way San Jose, CA 95134 USA Brocade FastIron

More information

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme. Validation Report

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme. Validation Report National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme TM Validation Report Cisco Systems, Inc. 170 West Tasman Drive, San Jose, CA 95134-1706 Cisco Catalyst 2K/3K

More information

Cisco Implementing Cisco IP Routing v2.0 (ROUTE)

Cisco Implementing Cisco IP Routing v2.0 (ROUTE) Course Overview ROUTE v2.0, a five-day ILT course, includes major updates and follows an updated blueprint. (However, note that this course does not cover all items listed on the blueprint.) Some older

More information

Cisco IoT Industrial Ethernet and Connected Grid Switches running IOS

Cisco IoT Industrial Ethernet and Connected Grid Switches running IOS National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme Validation Report Cisco Systems, Inc. 170 West Tasman Drive, San Jose, CA 95134-1706 Cisco IoT Industrial Ethernet

More information

AnyConnect Secure Mobility Client for Windows 10

AnyConnect Secure Mobility Client for Windows 10 National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme Validation Report Cisco Systems, Inc. 170 West Tasman Dr. San Jose, CA 95134 AnyConnect Secure Mobility Client

More information

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme Validation Report. Cisco Systems, Inc.

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme Validation Report. Cisco Systems, Inc. National Information Assurance Partnership TM Common Criteria Evaluation and Validation Scheme Validation Report Cisco Systems, Inc. 170 West Tasman Drive San Jose, CA 94002, USA Cisco Adaptive Security

More information

NI OS d for Brocade MLXe and NetIron

NI OS d for Brocade MLXe and NetIron 20 July 2017 NI OS 06.0.00d for Brocade MLXe and NetIron Release Notes v2.0 2017 Brocade Communications Systems, Inc. All Rights Reserved. Brocade, the B-wing symbol, and MyBrocade are registered trademarks

More information

PREREQUISITES TARGET AUDIENCE. Length Days: 5

PREREQUISITES TARGET AUDIENCE. Length Days: 5 Cisco Implementing Cisco IP Routing v2.0 (ROUTE) ROUTE v2.0 includes major updates and follows an updated blueprint. However, note that this course does not cover all items listed on the blueprint. Some

More information

HPE FlexNetwork MSR Router Series

HPE FlexNetwork MSR Router Series HPE FlexNetwork MSR Router Series About the HPE MSR Router Series Command s Part number: 5998-8799 Software version: CMW710-R0305 Document version: 6PW106-20160308 Copyright 2016 Hewlett Packard Enterprise

More information

HPE FlexNetwork MSR Router Series

HPE FlexNetwork MSR Router Series HPE FlexNetwork MSR Router Series About the HPE MSR Router Series Configuration Part number: 5998-8821 Software version: CMW710-R0305 Document version: 6PW106-20160308 Copyright 2016 Hewlett Packard Enterprise

More information

Brocade Directors and Switches using Fabric OS v8.1.0

Brocade Directors and Switches using Fabric OS v8.1.0 National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme TM Validation Report Brocade Communications Systems, Inc. 130 Holger Way San Jose, CA 95134 USA Brocade Directors

More information

Ethernet Fabrics- the logical step to Software Defined Networking (SDN) Frank Koelmel, Brocade

Ethernet Fabrics- the logical step to Software Defined Networking (SDN) Frank Koelmel, Brocade Ethernet Fabrics- the logical step to Software Defined Networking (SDN) Frank Koelmel, Brocade fkoelmel@broc 10/28/2013 2 2012 Brocade Communications Systems, Inc. Proprietary Information ETHERNET FABRICS

More information

Configuring MCT on Brocade ICX or FSX Switches

Configuring MCT on Brocade ICX or FSX Switches PSU1 MS HA T M BROCADE ICX 7750-48F STACK ID IOIOI PSU1 PSU2 PSU2 DIAG RNDT RESET TM 1/1 1/2 Brocade ICX 6610-24F SPEED 1/3 1/5 1/7 1/9 1/11 1/13 1/15 1/17 1/19 1/21 1/23 1/25 1/4 1/6 1/8 1/10 1/12 1/14

More information

About the HP MSR Router Series

About the HP MSR Router Series About the HP MSR Router Series Command (V7) Part number: 5998-7731b Software version: CMW710-R0304 Document version: 6PW104-20150914 Legal and notice information Copyright 2015 Hewlett-Packard Development

More information

Implementing Cisco IP Routing (ROUTE)

Implementing Cisco IP Routing (ROUTE) Implementing Cisco IP Routing (ROUTE) COURSE OVERVIEW: Implementing Cisco IP Routing (ROUTE) v2.0 is an instructor-led five-day training course developed to help students prepare for Cisco CCNP certification.

More information

Forcepoint NGFW 6.3.1

Forcepoint NGFW 6.3.1 National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme TM Validation Report Forcepoint 10900-A Stonelake Blvd. Austin, TX 78759, USA Forcepoint NGFW 6.3.1 Report Number:

More information

BROCADE CLOUD-OPTIMIZED NETWORKING: THE BLUEPRINT FOR THE SOFTWARE-DEFINED NETWORK

BROCADE CLOUD-OPTIMIZED NETWORKING: THE BLUEPRINT FOR THE SOFTWARE-DEFINED NETWORK BROCADE CLOUD-OPTIMIZED NETWORKING: THE BLUEPRINT FOR THE SOFTWARE-DEFINED NETWORK Ken Cheng VP, Service Provider and Application Delivery Products September 12, 2012 Brocade Cloud-Optimized Networking

More information

Cisco CCNP ROUTE: Implementing Cisco IP Routing (ROUTE) 2.0. Upcoming Dates. Course Description. Course Outline

Cisco CCNP ROUTE: Implementing Cisco IP Routing (ROUTE) 2.0. Upcoming Dates. Course Description. Course Outline Cisco CCNP ROUTE: Implementing Cisco IP Routing (ROUTE) 2.0 Implementing Cisco IP Routing (ROUTE) v2.0 is an instructor-led five day training course developed to help students prepare for Cisco CCNP certification.

More information

Interchassis Asymmetric Routing Support for Zone-Based Firewall and NAT

Interchassis Asymmetric Routing Support for Zone-Based Firewall and NAT Interchassis Asymmetric Routing Support for Zone-Based Firewall and NAT The Interchassis Asymmetric Routing Support for Zone-Based Firewall and NAT feature supports the forwarding of packets from a standby

More information

CCIE Routing & Switching

CCIE Routing & Switching CCIE Routing & Switching Cisco Certified Internetwork Expert Routing and Switching (CCIE Routing and Switching) certifies the skills required of expert-level network engineers to plan, operate and troubleshoot

More information

HPE FlexFabric 5950 Switch Series

HPE FlexFabric 5950 Switch Series HPE FlexFabric 5950 Switch Series About the HPE FlexFabric 5950 Configuration Guides Part number: 5200-0808 Software version: Release 6106 and later Document version: 6W100-20160513 Copyright 2016 Hewlett

More information

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme. Validation Report

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme. Validation Report National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme Validation Report Cisco Systems, Inc. Catalyst 4500 Series Wired Access Switches running IOS-XE 3.10 Report Number:

More information

Aruba Virtual Intranet Access (VIA) Client Version 3.0

Aruba Virtual Intranet Access (VIA) Client Version 3.0 National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme Validation Report Aruba, a Hewlett Packard Enterprise Company 3333 Scott Blvd Santa Clara, CA 95054 USA Aruba

More information

UNICOS/mp Common Criteria Evaluation

UNICOS/mp Common Criteria Evaluation UNICOS/mp Common Criteria Evaluation Janet Lebens, Cray Inc. Cray Proprietary Agenda Definitions NIAP CCEVS Common Criteria CC vs TCSEC Why Evaluate? Steps of Evaluation Details of Steps for Cray / Progress

More information

Certification Report

Certification Report Certification Report Curtiss-Wright Issued by: Communications Security Establishment Canada Certification Body Canadian Common Criteria Evaluation and Certification Scheme Government of Canada, Communications

More information

About the HP A7500 Configuration Guides

About the HP A7500 Configuration Guides About the HP A7500 s The HP A7500 configuration guides are part of the HP A7500 documentation set. They describe the software features for the HP A7500 Release 6620 & 6630 Series, and guide you through

More information

Introduction to Segment Routing

Introduction to Segment Routing Segment Routing (SR) is a flexible, scalable way of doing source routing. Overview of Segment Routing, page 1 How Segment Routing Works, page 2 Examples for Segment Routing, page 3 Benefits of Segment

More information

Juniper Networks J2300, J2350, J4300, M7i and M10i Services Routers running JUNOS 8.5R3

Juniper Networks J2300, J2350, J4300, M7i and M10i Services Routers running JUNOS 8.5R3 122 ASSURANCE MAINTENANCE REPORT MR3 (supplementing Certification Report No. CRP237 and Assurance Maintenance Reports MR1 and MR2) Juniper Networks J2300, J2350, J4300, M7i and M10i Services Routers running

More information

CISCO EXAM QUESTIONS & ANSWERS

CISCO EXAM QUESTIONS & ANSWERS CISCO 300-206 EXAM QUESTIONS & ANSWERS Number: 300-206 Passing Score: 800 Time Limit: 120 min File Version: 35.2 http://www.gratisexam.com/ Exam Code: 300-206 Exam Name: Implementing Cisco Edge Network

More information

Cisco Catalyst 3K/4K Wired Access Switches

Cisco Catalyst 3K/4K Wired Access Switches National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme TM Validation Report Cisco Systems, Inc. 170 West Tasman Drive, San Jose, CA 95134-1706 Cisco Catalyst 3K/4K

More information

August Brocade NetIron. Security Configuration Guide. Supporting Multi-Service IronWare R

August Brocade NetIron. Security Configuration Guide. Supporting Multi-Service IronWare R 18 August 2015 Brocade NetIron Security Configuration Guide Supporting Multi-Service IronWare R05.9.00 2015, Brocade Communications Systems, Inc. All Rights Reserved. ADX, Brocade, Brocade Assurance, the

More information

National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme. Validation Report Apple, Inc. Apple ios 9.

National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme. Validation Report Apple, Inc. Apple ios 9. National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme Validation Report Apple, Inc. Apple ios 9.2 Report Number: CCEVS-VR-VID10695-2016 Dated: January 28, 2016 Version:

More information

Implementing Cisco IP Routing

Implementing Cisco IP Routing 300-101 Implementing Cisco IP Routing NWExam.com SUCCESS GUIDE TO CISCO CERTIFICATION Exam Summary Syllabus Questions Table of Contents Introduction to 300-101 Exam on Implementing Cisco IP Routing...

More information

BROCADE S IPV6 SOLUTIONS

BROCADE S IPV6 SOLUTIONS BROCADE S IPV6 SOLUTIONS Wes Medley, Principal Architect wmedley@brocade.com Brocade NetIron Ipv6 Solutions Company Proprietary Information Agenda Brocade L 2/3 Product IPv6 Functionality UNH IPv6 Testing

More information

Release Notes ( ) Digi TransPort LR Product Family

Release Notes ( ) Digi TransPort LR Product Family Release Notes (93000809) Digi TransPort LR Product Family Version 3.2.0.6 December, 2017 INTRODUCTION This is a production firmware release for the Digi Transport LR product family. SUPPORTED PRODUCTS

More information

D4 Secure VPN Client for the HTC A9 Secured by Cog Systems

D4 Secure VPN Client for the HTC A9 Secured by Cog Systems National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme Validation Report Cog Systems Level 1, 277 King Street Newton NSW 2042 Australia D4 Secure VPN Client for the

More information

CCNA Routing and Switching (NI )

CCNA Routing and Switching (NI ) CCNA Routing and Switching (NI400+401) 150 Hours ` Outline The Cisco Certified Network Associate (CCNA) Routing and Switching composite exam (200-125) is a 90-minute, 50 60 question assessment that is

More information

Impact Analysis in MPLS Networks

Impact Analysis in MPLS Networks CHAPTER 7 The following topics provide an overview of the Cisco MPLS Assurance Manager 1.0 (Cisco MPLS-AM) service impact analysis (IA) solution and supported scenarios, which are used in VPN networks

More information

CISCO EXAM QUESTIONS & ANSWERS

CISCO EXAM QUESTIONS & ANSWERS CISCO 300-206 EXAM QUESTIONS & ANSWERS Number: 300-206 Passing Score: 800 Time Limit: 120 min File Version: 35.2 http://www.gratisexam.com/ Exam Code: 300-206 Exam Name: Implementing Cisco Edge Network

More information

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme. Validation Report

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme. Validation Report National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme Validation Report Cisco Systems, Inc. Catalyst 2960 and 3560 Series Wired Access Switches running IOS 15.2 Report

More information

Fortinet NSE7 Exam. Volume: 30 Questions

Fortinet NSE7 Exam. Volume: 30 Questions Volume: 30 Questions Question No : 1 An administrator has configured a dial-up IPsec VPN with one phase 2, extended authentication (XAuth) and IKE mode configuration. The administrator has also enabled

More information

Service Managed Gateway TM. How to Configure and Debug Generic Routing Encapsulation (GRE)

Service Managed Gateway TM. How to Configure and Debug Generic Routing Encapsulation (GRE) Service Managed Gateway TM How to Configure and Debug Generic Routing Encapsulation (GRE) Issue 1.1 Date 14 August 2007 Table of Contents 1 About this document...3 1.1 Scope...3 1.2 Readership...3 2 Introduction...4

More information

About the H3C S5130-HI configuration guides

About the H3C S5130-HI configuration guides About the H3C S5130-HI configuration guides The H3C S5130-HI configuration guides describe the software features for the H3C S5130-HI Switch Series, and guide you through the software configuration procedures.

More information

Australasian Information Security Evaluation Program

Australasian Information Security Evaluation Program Australasian Information Security Evaluation Program Certification Report Certificate Number: 2012/8282 11 Oct 2012 Version 1.0 Commonwealth of Australia 2012 Reproduction is authorised provided that the

More information

BGP NSF Awareness. Finding Feature Information

BGP NSF Awareness. Finding Feature Information Nonstop Forwarding (NSF) awareness allows a device to assist NSF-capable neighbors to continue forwarding packets during a Stateful Switchover (SSO) operation. The feature allows an NSF-aware device that

More information

How to Configure BGP over IKEv2 IPsec Site-to- Site VPN to an Google Cloud VPN Gateway

How to Configure BGP over IKEv2 IPsec Site-to- Site VPN to an Google Cloud VPN Gateway How to Configure BGP over IKEv2 IPsec Site-to- Site VPN to an Google Cloud VPN Gateway To connect to the Google Cloud VPN gateway, create an IPsec IKEv2 site-to-site VPN tunnel on your F-Series Firewall

More information

Network Automation: Options & Possibilities 2016 BROCADE COMMUNICATIONS SYSTEMS, INC.

Network Automation: Options & Possibilities 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. Network Automation: Options & Possibilities 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. Consumption Model Mid Enterprise HE Enterprise Telco Top 7 MSDC Regional CSP CSP Python DevOps 1 10 CLI Basic scripting

More information

Samsung Electronics Co., Ltd. Samsung Galaxy Note 5 & Galaxy Tab S2 VPN Client

Samsung Electronics Co., Ltd. Samsung Galaxy Note 5 & Galaxy Tab S2 VPN Client National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme Validation Report Samsung Electronics Co., Ltd. 416 Maetan-3dong, Yeongtong-gu, Suwon-si, Gyeonggido, 443-742

More information

Foundry IPv6 Configuration Guide

Foundry IPv6 Configuration Guide Foundry IPv6 Configuration Guide 2100 Gold Street P.O. Box 649100 San Jose, CA 95164-9100 Tel 408.586.1700 Fax 408.586.1900 January 2006 Copyright 2006 Foundry Networks, Inc. All rights reserved. No part

More information

NAT Box-to-Box High-Availability Support

NAT Box-to-Box High-Availability Support The feature enables network-wide protection by making an IP network more resilient to potential link and router failures at the Network Address Translation (NAT) border. NAT box-to-box high-availability

More information

Certified User Management Engineer (MTCUME) Training outline

Certified User Management Engineer (MTCUME) Training outline Certified User Management Engineer (MTCUME) Training outline Duration: Outcomes: Target Audience: Course prerequisites: 2 days By the end of this training session, the student will be able to securely

More information

Cisco Exam Troubleshooting and Maintaining Cisco IP Networks (TSHOOT) Version: 6.0 [ Total Questions: 79 ]

Cisco Exam Troubleshooting and Maintaining Cisco IP Networks (TSHOOT) Version: 6.0 [ Total Questions: 79 ] s@lm@n Cisco Exam 300-135 Troubleshooting and Maintaining Cisco IP Networks (TSHOOT) Version: 6.0 [ Total Questions: 79 ] Topic break down Topic No. of Questions Topic 1: Mix Questions 26 Topic 2: Troubleshooting

More information

InterAS Option B. Information About InterAS. InterAS and ASBR

InterAS Option B. Information About InterAS. InterAS and ASBR This chapter explains the different InterAS option B configuration options. The available options are InterAS option B, InterAS option B (with RFC 3107), and InterAS option B lite. The InterAS option B

More information

Integrating WX WAN Optimization with Netscreen Firewall/VPN

Integrating WX WAN Optimization with Netscreen Firewall/VPN Application Note Integrating WX WAN Optimization with Netscreen Firewall/VPN Joint Solution for Firewall/VPN and WX Platforms Alan Sardella Portfolio Marketing Choh Mun Kok and Jaymin Patel Lab Configuration

More information

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme. Validation Report

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme. Validation Report National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme TM Validation Report Network Device collaborative Protection Profile (NDcPP) Extended Package VPN Gateway Version

More information

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme Validation Report

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme Validation Report National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme Validation Report Dell Networking Platforms running Dell Networking OS v9.6 Report Number: CCEVS-VR-VID10588-2015

More information

HUAWEI USG6000 Series Next-Generation Firewall Technical White Paper VPN HUAWEI TECHNOLOGIES CO., LTD. Issue 1.1. Date

HUAWEI USG6000 Series Next-Generation Firewall Technical White Paper VPN HUAWEI TECHNOLOGIES CO., LTD. Issue 1.1. Date HUAWEI USG6000 Series Next-Generation Firewall Technical White Paper VPN Issue 1.1 Date 2014-03-14 HUAWEI TECHNOLOGIES CO., LTD. 2014. All rights reserved. No part of this document may be reproduced or

More information

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme TM Validation Report for the Apple ios 11 VPN Client on iphone and ipad Report Number: CCEVS-VR-VID10876 Dated:

More information

Certification Report

Certification Report Certification Report EAL 2+ Evaluation of Service Router Operating System (SR OS) v7.0 Issued by: Communications Security Establishment Canada Certification Body Canadian Common Criteria Evaluation and

More information

CISCO EXAM QUESTIONS & ANSWERS

CISCO EXAM QUESTIONS & ANSWERS CISCO 642-618 EXAM QUESTIONS & ANSWERS Number: 642-618 Passing Score: 800 Time Limit: 120 min File Version: 39.6 http://www.gratisexam.com/ CISCO 642-618 EXAM QUESTIONS & ANSWERS Exam Name: Deploying Cisco

More information

PICA8 Intro. Copyright 2015 Pica8 Inc. All Rights Reserved.

PICA8 Intro. Copyright 2015 Pica8 Inc. All Rights Reserved. PICA8 Intro pica8.com sales@pica8.com @pica8 Copyright 2015 Pica8 Inc. All Rights Reserved. Pica8 for Network Monitoring Fabrics The Leader in White Box SDN for Monitoring Networks ORCHESTRATION AUTOMATION

More information

Virtual Tunnel Interface

Virtual Tunnel Interface This chapter describes how to configure a VTI tunnel. About s, on page 1 Guidelines for s, on page 1 Create a VTI Tunnel, on page 2 About s The ASA supports a logical interface called (VTI). As an alternative

More information

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme. Validation Report. Cisco Systems, Inc.

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme. Validation Report. Cisco Systems, Inc. National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme Validation Report Cisco Systems, Inc. 170 West Tasman Drive San Jose, CA 94002, USA Cisco Adaptive Security Appliances

More information

TrafficWorks Software Release c for Brocade ServerIron ADX Series Application Delivery Switches Release Notes v1.3

TrafficWorks Software Release c for Brocade ServerIron ADX Series Application Delivery Switches Release Notes v1.3 TrafficWorks Software Release 12.0.00c for Brocade ServerIron ADX Series Application Delivery Switches Release Notes v1.3 November 2, 2009 Document History Document Title Summary of Changes Publication

More information

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme Validation Report. Aruba Networks Inc Scott Blvd.

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme Validation Report. Aruba Networks Inc Scott Blvd. National Information Assurance Partnership TM Common Criteria Evaluation and Validation Scheme Validation Report Aruba Networks Inc. 3333 Scott Blvd. Santa Clara, CA 95054 Aruba Networks ClearPass Policy

More information

DEFENSE INFORMATION SYSTEMS AGENCY P. O. BOX 549 FORT MEADE, MARYLAND

DEFENSE INFORMATION SYSTEMS AGENCY P. O. BOX 549 FORT MEADE, MARYLAND DEFENSE INFORMATION SYSTEMS AGENCY P. O. BOX 549 FORT MEADE, MARYLAND 20755-0549 IN REPLY REFER TO: Joint Interoperability Test Command (JTE) 2 Nov 11 MEMORANDUM FOR DISTRIBUTION SUBJECT: Extension of

More information

Exam Questions

Exam Questions Exam Questions 300-209 SIMOS Implementing Cisco Secure Mobility Solutions (SIMOS) https://www.2passeasy.com/dumps/300-209/ 1. Refer to the exhibit. Which VPN solution does this configuration represent?

More information

Certification Report

Certification Report Certification Report EAL 3+ Evaluation of Juniper Networks M-Series Multiservice Edge Routers, MX-Series 3D Universal Edge Routers, T-Series Core Routers and EX-Series Ethernet Switches running JUNOS 11.4R2

More information

National Information Assurance Partnership

National Information Assurance Partnership National Information Assurance Partnership TM Common Criteria Evaluation and Validation Scheme Validation Report Xceedium Gatekeeper Version 3.6 Report Number: CCEVS-VR-06-0048 Dated: 31 October 2006 Version:

More information

COMMON CRITERIA CERTIFICATION REPORT

COMMON CRITERIA CERTIFICATION REPORT COMMON CRITERIA CERTIFICATION REPORT Ixia NTO 7303 and Vision ONE v4.5.0.29 30 October 2017 383-4-409 1.0 Government of Canada. This document is the property of the Government of Canada. It shall not be

More information

Connect Security Day 2016

Connect Security Day 2016 Connect Security Day 2016 Ethernet Fabric modernes Netzdesign Eric Waigel System Engineer Legal Disclaimer Please See Risk Factors on Form 10-Q and Form 10-K Filed with the SEC All or some of the products

More information

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme. Validation Report

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme. Validation Report National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme Validation Report Cisco Systems, Inc., 170 West Tasman Dr., San Jose, CA 95134 TM Cisco Wide Area Application

More information

Cisco Certified Network Associate ( )

Cisco Certified Network Associate ( ) Cisco Certified Network Associate (200-125) Exam Description: The Cisco Certified Network Associate (CCNA) Routing and Switching composite exam (200-125) is a 90-minute, 50 60 question assessment that

More information

AMS-IX version 4. an MPLS/VPLS based internet exchange

AMS-IX version 4. an MPLS/VPLS based internet exchange AMS-IX version 4 an MPLS/VPLS based internet exchange Overview AMS-IX version 3 Short overview Bottlenecks and limitations AMS-IX version 4 The MPLS/VPLS platform AMS-IX v3 to v4 migration Operational

More information

August Brocade NetIron. Software Defined Networking (SDN) Configuration Guide. Supporting Multi-Service IronWare R05.9.

August Brocade NetIron. Software Defined Networking (SDN) Configuration Guide. Supporting Multi-Service IronWare R05.9. 18 August 2015 Brocade NetIron Software Defined Networking (SDN) Configuration Guide Supporting Multi-Service IronWare R05.9.00 2015, Brocade Communications Systems, Inc. All Rights Reserved. ADX, Brocade,

More information

OPEN CONTRAIL ARCHITECTURE GEORGIA TECH SDN EVENT

OPEN CONTRAIL ARCHITECTURE GEORGIA TECH SDN EVENT OPEN CONTRAIL ARCHITECTURE GEORGIA TECH SDN EVENT sdn-and-nfv-technical---georgia-tech---sep-2013---v2 Bruno Rijsman, Distinguished Engineer 24 September 2013 Use Cases 2 Copyright 2013 Juniper Networks,

More information

Lenovo ThinkSystem NE Release Notes. For Lenovo Cloud Network Operating System 10.6

Lenovo ThinkSystem NE Release Notes. For Lenovo Cloud Network Operating System 10.6 Lenovo ThinkSystem NE10032 Release Notes For Lenovo Cloud Network Operating System 10.6 Note: Before using this information and the product it supports, read the general information in the Safety information

More information

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme. Validation Report. for

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme. Validation Report. for National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme TM Validation Report for Report Number: CCEVS-VR-10746-2016 Dated: November 10, 2016 Version: 1.0 National Institute

More information

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme. Validation Report. for

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme. Validation Report. for National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme Validation Report for Microsoft Windows 10 Anniversary Update IPsec VPN Client TM Report Number: CCEVS-VR-VID10753-2016

More information

About IOS XR Traffic Controller (XTC)

About IOS XR Traffic Controller (XTC) Configure PCE The path computation element (PCE) describes a set of procedures by which a path computation client (PCC) can report and delegate control of head-end tunnels sourced from the PCC to a PCE

More information

Protecting an EBGP peer when memory usage reaches level 2 threshold 66 Configuring a large-scale BGP network 67 Configuring BGP community 67

Protecting an EBGP peer when memory usage reaches level 2 threshold 66 Configuring a large-scale BGP network 67 Configuring BGP community 67 Contents Configuring BGP 1 Overview 1 BGP speaker and BGP peer 1 BGP message types 1 BGP path attributes 2 BGP route selection 6 BGP route advertisement rules 6 BGP load balancing 6 Settlements for problems

More information

Managing Site-to-Site VPNs: The Basics

Managing Site-to-Site VPNs: The Basics CHAPTER 23 A virtual private network (VPN) consists of multiple remote peers transmitting private data securely to one another over an unsecured network, such as the Internet. Site-to-site VPNs use tunnels

More information

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme Validation Report

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme Validation Report National Information Assurance Partnership TM Common Criteria Evaluation and Validation Scheme Validation Report Blue Ridge Networks BorderGuard Centrally Managed Embedded PKI Virtual Private Network (VPN)

More information

WiNG 5.x How-To Guide

WiNG 5.x How-To Guide WiNG 5.x How-To Guide Tunneling Remote Traffic using L2TPv3 Part No. TME-08-2012-01 Rev. A MOTOROLA, MOTO, MOTOROLA SOLUTIONS and the Stylized M Logo are trademarks or registered trademarks of Motorola

More information

Network Configuration Example

Network Configuration Example Network Configuration Example Configuring a Two-Tiered Virtualized Data Center for Large Enterprise Networks Release NCE 33 Modified: 2016-08-01 Juniper Networks, Inc. 1133 Innovation Way Sunnyvale, California

More information

PassTorrent. Pass your actual test with our latest and valid practice torrent at once

PassTorrent.   Pass your actual test with our latest and valid practice torrent at once PassTorrent http://www.passtorrent.com Pass your actual test with our latest and valid practice torrent at once Exam : 352-011 Title : Cisco Certified Design Expert Practical Exam Vendor : Cisco Version

More information

Configuring Policy-Based Routing

Configuring Policy-Based Routing This chapter contains the following sections: Finding Feature Information, page 1 Information About Policy Based Routing, page 1 Licensing Requirements for Policy-Based Routing, page 5 Prerequisites for

More information

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme

National Information Assurance Partnership. Common Criteria Evaluation and Validation Scheme National Information Assurance Partnership Common Criteria Evaluation and Validation Scheme TM Validation Report for the Venafi Trust Protection Platform, Version 1.0 Report Number: CCEVS-VR-VID10800-2017

More information

Configuring FlexVPN Spoke to Spoke

Configuring FlexVPN Spoke to Spoke Last Published Date: March 28, 2014 The FlexVPN Spoke to Spoke feature enables a FlexVPN client to establish a direct crypto tunnel with another FlexVPN client leveraging virtual tunnel interfaces (VTI),

More information

BGP Support for IP Prefix Export from a VRF Table into the Global Table

BGP Support for IP Prefix Export from a VRF Table into the Global Table BGP Support for IP Prefix Export from a VRF Table into the Global Table This feature allows a network administrator to export IP prefixes from a VRF table into the global routing table. Finding Feature

More information