19
Cisco 2811 and Cisco 2821 Integrated Services Router FIPS 140-2 Non Proprietary Security Policy
OL-8663-01
Cisco 2811 and Cisco 2821 Routers
DH public key r r
w
d
skeyid r r
w
d
skeyid_d r r
w
d
skeyid_a r r
w
d
skeyid_e r r
w
d
IKE session encrypt key r r
w
d
IKE session authentication key r r
w
ISAKMP preshared r r
w
d
IKE hash key r r
w
d
secret_1_0_0 r r
w
d
IPSec encryption key r r
w
d
Table 10 Role and Service Access to CSP (Continued)
Note: An empty entry indicates that a particular SRDI is not accessible by the corresponding service
SRDI/Role/Service Access Policy
Role/Service
User Role
Status Functions
Network Functions
Terminal Functions
Directory Services
Crypto-Officer Role
Configure the Router
Define Rules and Filters
Status Functions
Manage the Router
Set Encryptions/Bypass
Change WAN Interface Cards