Defence Signals Directorate Reveal their secrets....Protect our own

Cisco IOS/IPSec Routers: Network Security

Cisco IOS/IPSec Routers: Cisco 800 series, 1800 series, 2800 series, 3800 series, 7200 series, 7300 series and 7600 series routers.

Crypto Accelerators: AIM-VPN/BPII-PLUS, AIM-VPN/EPII-PLUS, AIM-VPN/HPII-PLUS, SA-VAM2+ and SPA-IPSEC-2G.

IOS Versions: 12.4(6)T3, 12.4(7) and 12.2(33)SRA.

EAL2 Certified

Product Type: Network Security

Certificate Details: 41/2007, March 2007

Assurance Level: EAL2

Evaluation Facility: CSC

Manufacturer: Cisco Systems Inc

Dealer: Cisco Systems

Contact: Tony Hall
Federal Security Policy
Systems Engineer
Sales / Channels
Phone: +61 2 6216 0647
Mobile: +61 401 890 577
Fax: +61 2 6247 3422
Email: anthhall@cisco.com
Web: www.cisco.com/

Cisco website

Security Target Security Target [518KB]
Certification Report Certification Report [163KB]

Cisco IOS/IPSec is the implementation of IPSec within Cisco's Internetwork Operating System (IOS). IPSec is a proposed Internet standard (RFCs 2401-2410 and 2451) which provides confidentiality, authentication and integrity for IP data transmitted over untrusted links or networks. A common application of IOS/IPSec is the construction of Virtual Private Networks (VPNs).The scope of the evaluation included the components of the IOS software that implement the IPSec function, and functions that are relevant to the secure configuration and operation of IPSec. The evaluated configuration requires the use of inbuilt or installable hardware acceleration modules.

The evaluated platforms are:

Model Family Models IPSec Hardware Acceleration Module IOS Release
800

871
876
877
878
851
851W
857
857W

Built In 12.4(6)T3
1800 1801
1802
1803
1811
1812
Built In 12.4(6)T3
1800 1841 optionally with AIM-VPN/BPII-PLUS 12.4(7)
2800

2801
2811
2821
2851

optionally with AIM-VPN/EPII-PLUS

12.4(7)
3800 3825 optionally with AIM-VPN/EPII-PLUS 12.4(7)
3800 3845 optionally with AIM-VPN/HPII-PLUS 12.4(7)
7200 7204, 7206 SA-VAM2+ 12.4(7)
7300 7301 SA-VAM2+ 12.4(7)
7600
(Catalyst
6500)
Any 6500/7600 with Supervisor Engine 720,
720-3B or 720-3BXL
SPA-IPSEC-2G 12.2(33)SRA