Assurance Continuity - Juniper Network Security Appliances, firmware version 5.4.0r4

Date of Maintenance Completion: 30 October 2007

Product Type: Firewall

Conformance Claim: EAL4

PP Identifier: US Government Traffic-Filter Firewall Protection Profile for Low-Risk Environments, Version 1.1 (Archived)

Original Evaluated TOE: 23 December 2005 - Juniper Networks Security Appliances

Please note: These are for the Original Evaluated TOE; consequently, they do not refer to this maintained version, although they apply to the maintained version.

Please note: This serves as an addendum to the VR for the Original Evaluated TOE

Readers are reminded that the certification of this product (TOE) is the result of maintenance, rather than an actual re-evaluation of the product. Maintenance only considers the affect of TOE changes on the assurance baseline (i.e. the original evaluated TOE); maintenance is not intended to provide assurance in regard to the resistance of the TOE to new vulnerabilities or attack methods discovered since the date of the initial certificate. Such assurance can only be gained through re-evaluation.

Using a security impact analysis of the changes made to the TOE, which was provided by the developer, the CCEVS has determined that the impact of changes on the TOE are considered minor and that independent evaluator analysis was not necessary. A summary of the results can be found in the Maintenance Report, which is written in relation to the product's original validation report and Security Target. Readers are therefore reminded to read the Security Target, Validation Report, and the Assurance Maintenance Report to fully understand the meaning of what a maintained certificate represents.

PRODUCT DESCRIPTION

Juniper Network Security Appliances, firmware version 5.4.0r4, consisting of one or more of the following security appliances:

  1. Juniper Networks NetScreen-5GT (Part number:NS-5GT-00*, NS-5GT-10*, NS-5GT-20*, where * = 1, 3, 5, 7, 8) Hardware version 1010
  2. Juniper Networks NetScreen-204 (Part number: NS-204-00*, where * = 1, 3, 5, or 7). Hardware version 0110
  3. Juniper Networks NetScreen-208 (Part number: NS-208-00*, where * = 1, 3, 5, or 7). Hardware version 0110
  4. Juniper Networks NetScreen-500 (Part number:NS-500-SK1, NS-500ES-GB1-**, NS-500ES-GB2-**, NS-500SP-GB1-**, NS-500SP-GB2-**, NS-500ES-FE1-**, NS-500ES-FE2-**, where ** = AC or DC). Hardware version: 4110
  5. Juniper Networks NetScreen ISG 1000 (Part number: NS-ISG-1000, NS-ISG-1000-DC, NS-ISG-1000B, NS-ISG-1000B-DC). Hardware version: 3010
  6. Juniper Networks NetScreen ISG 2000 (Part number: NS-ISG-2000, NS-ISG-2000-DC, NS-ISG-2000B, NS-ISG-2000B-DC). Hardware version 3010
  7. Juniper Networks NetScreen 5200 (Part number: NS-5200, NS-5200-DC). Hardware version: 3010.
  8. Juniper Networks NetScreen 5400 (Part number: NS-5400 NS-5400-DC). Hardware version: 3010
  9. Juniper Networks NetScreen SSG-5 (Part number: SSG-5-SB, SSG-5-SH). Hardware version: 3010
  10. Juniper Networks NetScreen SSG-20 (Part number: SSG-20-SB, SSG-20-SH). Hardware version: 3010
  11. Juniper Networks NetScreen SSG-520 (Part number: SSG-520M-SH, SSG-520M-SH-N-TAA, SSG-520M-SH-DC-N-TAA). Hardware version: 3010
  12. Juniper Networks NetScreen SSG-550 (Part number: SSG-550M-SH, SSG-550M-SH-N-TAA, SSG-550M-SH-DC-N-TAA). Hardware version: 3010

Vendor Information

logo
Juniper Networks, Inc.
Mike Kouri
408-936-8206

http://www.juniper.net