Cryptographic algorithms on the BR-MLX-10GX4-IPSEC-M module
The
Extreme
NetIron BR-MLX-10GX4-IPSEC-M module in FIPS mode supports the following FIPS 140-2-approved cryptographic algorithms:
- IKEv2 KDF SP800-135
- KAS ECC SP800-56A
- KAS FFC SP800-56A
- DRBG SP800-90A
- AES (AES-256-ECB)
- GCM (SP800-38D)
Algorithms running on the onboard security engine:
- AES (AES-128-CBC and AES-256-CBC)
- SHA (SHA-1, SHA-224, SHA-256, SHA-384, SHA-512)
- Elliptical Curve Diffie-Hellman (ECDH)
- ECDSA
Algorithms running on the IPsec FPGA:
- AES (AES-128-GCM)
- AES (AES-256-GCM)
Algorithms running on the MACsec PHY: