Page 1
SX-500 FIPS 140-2 Level 1 User Guidance Manual Revision A Date: 2009.08.13 140-00188-230A Arrow.com. Downloaded from...
Page 2
SX-500 FIPS 140-2 User Guidance Manual REVISION HISTORY Rev. Date Revision by Comments 2009.08.13 Lee Aydelotte Initial Release Silex Technology America 140-00188-230X2 Arrow.com. Arrow.com. Downloaded from Downloaded from...
America, Inc. to provide an encrypted wireless LAN connection for an attached client device. The client device may attach to the SX-500 via a serial port or wired Ethernet port. Secure LAN communication is provided by FIPS 140-2 compliant WPA2 (AES-CCMP) encryption with manual key distribution (WPA-PSK) or IEEE 802.11i key exchange with a RADIUS...
– PEAP (for key establishment in FIPS mode as per FIPS 140-2 IG 7.1) – 802.11i KDF (for key establishment in FIPS mode as per FIPS 140-2 IG 7.2) SX-500 FIPS 140-2 User Guidance Manual 140-00188-230A Copyright 2009 Silex Technology America Inc. All rights reserved Arrow.com. Arrow.com. Arrow.com.
Green, Yellow and Orange LEDs 3.2 Logical Ports The SX-500 has logical interfaces for transfer of data and for configuration and control of the unit. These logical interfaces may share a physical port. The application firmware in the SX- 500 separates and routes the data to the appropriate internal firmware task associated with the logical interface.
4 INSTALLATION AND USE Before the SX-500 may be used in the target environment, it must be properly configured by a Cryptographic Officer with the necessary security parameters and network identification values. Please refer to the Cryptographic User Guidance Manual for details of this procedure.
4.1 Required Configuration For the SX-500 to operate in FIPS 140-2 approved mode, the wireless security configuration must be set as follows: Item Required Setting Wireless Encryption Mode WPA2 (AES-CCMP) Wireless Authentication PSK or TLS or PEAP or FAST The Cryptographic Officer can verify these parameters are set properly through the console or web control interfaces.
Simple enable the power supply to the unit (by plugging it in or throwing the appropriate power switch). After a short initialization period, the SX-500 will be operational and ready to secure wireless LAN communication to the attached device. When the unit connects to the target Access Point (as configured by the Cryptographic Officer), the green status LED on the unit will be lit.
The module also performs the known answer tests on the following algorithms: AES CBC & CCM DRNG SHA-1 HMAC SHA-1 TLS-PRF SX-500 FIPS 140-2 User Guidance Manual 140-00188-230A Copyright 2009 Silex Technology America Inc. All rights reserved Arrow.com. Arrow.com. Arrow.com. Arrow.com. Arrow.com. Arrow.com. Arrow.com.
5 MAINTENANCE There is no user maintenance involved in the use of the SX-500. If a defect is observed in the operation of the device, it should be referred to security management personnel for replacement or repair.
Need help?
Do you have a question about the SX-500 and is the answer not in the manual?
Questions and answers