Certificate 2075 - Cisco Catalyst 6506, 6506-E, 6509 and 6509-E Switches with Wireless Services Modules-2 (WiSM2)
intCertNum 2075
strVendorName Cisco Systems, Inc.
strURL http://www.cisco.com
strAddress1 170 West Tasman Drive
strAddress2
strAddress3
strCity San Jose
strStateProv CA
strPostalCode 95134
strCountry 95134
strContact Palani Karuppan
strEmail pchetty@cisco.com
strPhone 408-525-2747
strFax
strContact2
strEmail2
strFax2
strPhone2
intCertNum 2075
strModuleName Cisco Catalyst 6506, 6506-E, 6509 and 6509-E Switches with Wireless Services Modules-2 (WiSM2)
strPartNumber Hardware Versions: Chassis: Catalyst 6506 switch [1], Catalyst 6506-E switch [2], Catalyst 6509 switch [3] and Catalyst 6509-E switch [4];
Backplane: WS-C6506 [1], WS-C6506-E [2], WS-C6509 [3] and WS-C6509-E [4];
FIPS Kit: P/N 800-27009 [1, 2], P/N 800-26335 [3, 4] and WS-SVCWISM2FIPKIT= [1, 2, 3, 4];
with one Supervisor Blade [1, 2, 3, 4]: [WS-SUP720-3BXL, WS-SUP720-3B, VS-S720-10G-3C or VS-S720-10G-3CXL] and with one WiSM2 [1, 2, 3, 4]: [WS-SVC-WISM2-K9=, WS-SVC-WISM2-5-K9=, WS-SVC-WISM2-3-K9=, WS-SVC-WISM2-1-K9=, WS-SVC-WISM2-5-K9, WS-SVC-WISM2-3-K9 or WS-SVC-WISM2-1-K9];
Firmware Versions: Supervisor Blade: Cisco IOS Release 12.2.33SXJ, Cisco IOS Release 12.2.33SXJ1 or Cisco IOS Release 12.2.33SXJ2;
WiSM2: 7.0.240.0, 7.0.250.0 or 7.0.251.2
memModuleNotes When operated in FIPS mode and with the tamper evident seals and physical security devices installed as indicated in the Security Policy
str140Version 140-2
_sp_ Security Policy   [pdf][html][txt]
_cert_ Certificate   [pdf]
strPURL
strModuleType Hardware
strValidationDate 01/29/2014;02/20/2014;03/13/2015
intOverallLevel 2
memIndividualLevelNotes -Design Assurance: Level 3;-Mitigation of Other Attacks: N/A
strFIPSAlgorithms AES (Certs. #1347, #1348 and #2330);
HMAC (Certs. #785, #786 and #787);
RNG (Cert. #742);
RSA (Certs. #653 and #654);
SHS (Certs. #1228, #1230 and #2014);
Triple-DES (Cert. #935);
DRBG (Cert. #289)
strOtherAlgorithms AES (Cert. #2330, key wrapping;
key establishment methodology provides 128 bits of encryption strength);
RSA (key wrapping;
key establishment methodology provides 112 bits of encryption strength);
Diffie-Hellman (key agreement: key establishment methodology provides 112 bits of encryption strength;
non-compliant less than 112 bits of encryption strength);
FIPS 186-2 RNG (Cert. #741);
NDRNG;
RC4;
MD5;
HMAC MD5;
AES-CTR (non-compliant);
CCKM
strConfiguration Multi-chip standalone
memModuleDescription The Cisco Catalyst 6506, 6506-E, 6509 and 6509-E Switches with WiSM WLAN Controller deliver centralized control and high capacity for medium to large-scale Enterprise wireless LAN networks. In FIPS 140-2 mode of operation, the Cisco WiSM2 Controller supports the IEEE 802.11i & 802.1x standards, IETF CAPWAP standard and supports a Secure Wireless Architecture with certified WiFi Alliance WPA-2 security. The Cisco WiSM2 Controller supports voice, video and data services along with Cisco Clean Air technology, IPv6 mobility, intrusion protection and intelligent radio resource management.
intModuleCount 1
memAdditionalNotes 02/20/14: Added FW 7.0.250.0 and updated security policy.
03/13/15: Added FW 7.0.251.2 and updated security policy.
strFirstValidtionDate 01/29/14 00:00:00
strLabName InfoGard
strValidationYear 2014