Cryptographic algorithms on the BR-MLX-10GX4-IPSEC-M module
 
   
	 The 
		
Extreme 
		 NetIron BR-MLX-10GX4-IPSEC-M module in FIPS mode supports the following FIPS 140-2-approved cryptographic algorithms: 
	 
 
		- IKEv2 KDF SP800-135 
		
- KAS ECC SP800-56A 
		
- KAS FFC SP800-56A 
		
- DRBG SP800-90A 
		
- AES (AES-256-ECB) 
		
- GCM (SP800-38D) 
		
Algorithms running on the onboard security engine: 
	 
 
	  
		- AES (AES-128-CBC and AES-256-CBC) 
		
- SHA (SHA-1, SHA-224, SHA-256, SHA-384, SHA-512) 
		
- Elliptical Curve Diffie-Hellman (ECDH) 
- ECDSA 
Algorithms running on the IPsec FPGA: 
 
	  
		- AES (AES-128-GCM) 
		
- AES (AES-256-GCM) 
Algorithms running on the MACsec PHY: