Certificate 2146 - Cisco 881W, 881GW, 1941W, 891W, C819HGW+7-A-A-K9, C819HGW-V-A-K9, C819HGW-S-A-K9, and C819HWD-A-K9 Integrated Services Routers (ISRs)
intCertNum 2146
strVendorName Cisco Systems, Inc.
strURL http://www.cisco.com
strAddress1 170 West Tasman Dr.
strAddress2
strAddress3
strCity San Jose
strStateProv CA
strPostalCode 95134
strCountry 95134
strContact Global Certification Team
strEmail certteam@cisco.com
strPhone
strFax
strContact2
strEmail2
strFax2
strPhone2
intCertNum 2146
strModuleName Cisco 881W, 881GW, 1941W, 891W, C819HGW+7-A-A-K9, C819HGW-V-A-K9, C819HGW-S-A-K9, and C819HWD-A-K9 Integrated Services Routers (ISRs)
strPartNumber Hardware Versions: Cisco 881W, 881GW, 891W, C819HGW+7-A-A-K9, C819HGW-V-A-K9, C819HGW-S-A-K9, C819HWD-A-K9 and 1941W with [FIPS Kit (CISCO-FIPS-KIT=), Revision -B0];
Firmware Versions: Router Firmware Version: IOS 15.2(4)M6A and AP Firmware Version: 15.2.2-JB
memModuleNotes When operated in FIPS mode with tamper evident labels installed as indicated in the Security Policy. The module generates cryptographic keys whose strengths are modified by available entropy
str140Version 140-2
_sp_ Security Policy   [pdf][html][txt]
_cert_ Certificate   [pdf]
strPURL
strModuleType Hardware
strValidationDate 05/13/2014;08/06/2014
intOverallLevel 2
memIndividualLevelNotes -Roles, Services, and Authentication: Level 3;-Design Assurance: Level 3;-Mitigation of Other Attacks: N/A
strFIPSAlgorithms AES (Certs. #962, #1115, #1535, #1648, #1791, #2611 and #2620);
CVL (Cert. #231);
DRBG (Cert. #401);
ECDSA (Cert. #450);
HMAC (Certs. #537, #538, #627, #1606 and #1618);
RNG (Cert. #1236);
RSA (Certs. #1338 and #1347);
SHS (Certs. #933, #934, #1038, #2194, #2182 and #2208);
Triple-DES (Certs. #757, #758, #812 and #1566)
strOtherAlgorithms DES;
Diffie-Hellman (key establishment methodology provides between 112 and 150 bits of encryption strength;
non-compliant less than 112 bits of encryption strength);
EC Diffie-Hellman (key establishment methodology provides between 128 and 192 bits of encryption strength);
GDOI (key wrapping;
key establishment methodology provides between 112 and 150 bits of encryption strength);
HMAC-MD5;
MD5;
RC4;
RSA (key wrapping;
key establishment methodology provides between 112 and 128 bits of encryption strength;
non-compliant less than 112 bits of encryption strength)
strConfiguration Multi-chip standalone
memModuleDescription The Cisco 800 Series Integrated Services Routers are fixed-configuration routers that provide collaborative business solutions for data communication to small businesses and enterprise teleworkers. They offer wireless, Metro Ethernet, and multiple DSL technologies to provide business continuity. The routers provide the performance required for concurrent services, including firewall, intrusion prevention, content filtering, and encryption for VPNs for optimizing voice and video applications.
intModuleCount 1
memAdditionalNotes 08/06/14: Changed FW to IOS 15.2(4)M6A and updated the security policy.
strFirstValidtionDate 05/13/14 00:00:00
strLabName Leidos
strValidationYear 2014