EasyManuals Logo

Cisco 2811 User Manual

Cisco 2811
30 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #18 background imageLoading...
Page #18 background image
18
Cisco 2811 and Cisco 2821 Integrated Services Router FIPS 140-2 Non Proprietary Security Policy
OL-8663-01
Cisco 2811 and Cisco 2821 Routers
Note All RSA operations are prohibited by policy, and commands that can be executed by Officer are shown
“# command”.
.
Enable secret Shared
Secret
The ciphertext password of the CO role. However,
the algorithm used to encrypt this password is not
FIPS approved. Therefore, this password is
considered plaintext for FIPS purposes. This
password is zeroized by overwriting it with a new
password.
NVRAM
(plaintext)
Overwrite with new
password
RADIUS secret Shared
Secret
The RADIUS shared secret. This shared secret is
zeroized by executing the “no radius-server key”
command.
NVRAM
(plaintext),
DRAM
(plaintext)
“# no radius-server key”
TACACS+
secret
Shared
Secret
The TACACS+ shared secret. This shared secret is
zeroized by executing the “no tacacs-server key”
command.
NVRAM
(plaintext),
DRAM
(plaintext)
“# no tacacs-server key”
Table 10 Role and Service Access to CSP
Note: An empty entry indicates that a particular SRDI is not accessible by the corresponding service
SRDI/Role/Service Access Policy
Role/Service
User Role
Status Functions
Network Functions
Terminal Functions
Directory Services
Crypto-Officer Role
Configure the Router
Define Rules and Filters
Status Functions
Manage the Router
Set Encryptions/Bypass
Change WAN Interface Cards
Security Relevant Data Item
PRNG Seed r d r
w
d
DH private exponent r r
w
d
DH public key r r
w
d
Table 9 Cryptographic Keys and CSPs (Continued)

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco 2811 and is the answer not in the manual?

Cisco 2811 Specifications

General IconGeneral
Full duplexYes
Networking standards-
Ethernet LAN data rates10, 100 Mbit/s
Supports ISDN connectionNo
SafetyUL 60950, CAN/CSA C22.2 No. 60950, IEC 60950, EN 60950-1, AS/NZS 60950
Flash memory128 MB
Internal memory256 MB
I/O ports2 x USB\\r 2 x 10/100 Base-T
Ethernet LAN (RJ-45) ports2
Storage temperature (T-T)-40 - 70 °C
Firewall securityCisco IOS
Security algorithms128-bit AES, 192-bit AES, 256-bit AES, 3DES, DES
Product colorBlue, Stainless steel
Rack capacity1U
Weight and Dimensions IconWeight and Dimensions
Depth416.6 mm
Width438.2 mm
Height44.5 mm
Weight6400 g

Related product manuals