Self-Tests Performed By Aim; Secure Operation Of The Cisco 2811 Or 2821 Router; Initial Setup - Cisco 2811 - Voice Security Bundle Router Operations

Integrated services routers with aim-vpn/epii-plus
Hide thumbs Also See for 2811 - Voice Security Bundle Router:
Table of Contents

Advertisement

2.6.3 Self-tests performed by AIM

AIM Self Tests
o POST tests
o Conditional Tests
3

Secure Operation of the Cisco 2811 or 2821 router

The Cisco 2811 and 2821 routers meet all the Level 2 requirements for FIPS 140-2. Follow the
setting instructions provided below to place the module in FIPS-approved mode. Operating this
router without maintaining the following settings will remove the module from the FIPS
approved mode of operation.
3.1

Initial Setup

1. The Crypto Officer must apply tamper evidence labels as described in Section 2.4 of this
document.
2. The Crypto Officer must disable IOS Password Recovery by executing the following
commands:
configure terminal
no service password-recovery
end
show version
NOTE: Once Password Recovery is disabled, administrative access to the module
without the password will not be possible.
3
Unless disabled by Crypto Officer.
© Copyright 2007 Cisco Systems, Inc.
This document may be freely reproduced and distributed whole and intact including this Copyright Notice.
AES Known Answer Test
Triple-DES Known Answer Test
SHA-1 Known Answer Test
HMAC-SHA-1 Known Answer Test
3
AES Known Answer Test
Triple-DES Known Answer Test
SHA-1 Known Answer Test
HMAC-SHA-1 Known Answer Test
RNG Known Answer Test
Firmware integrity test
Diffie Hellman Test
RSA signature gen/ver known answer test
Pairwise consistency test for RSA signature keys
Continuous RNG test for the hardware RNG
28

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

28112821

Table of Contents