NIAP Oversees Evaluations of Commercial IT Products for Use in National Security Systems
|
|
|
Archived U.S. Government Approved Protection Profile - Extended Package for VPN Gateways Version 2.1
Short Name:
ep_vpn_gw_v2.1
Technology Type:
Virtual Private Network
CC Version:
3.1
Date:
2017.03.08
Preceded By:
pp_ndcpp_vpn_gw_ep_v2.0
Succeeded By:
mod_vpngw_v1.0
Sunset Date:
2019.12.31
Conformance Claim:
None
Protection Profile
Control Mapping
PP OVERVIEW
This Extended Package (EP) describes security requirements for a VPN Gateway. This is defined to be a device at the edge of a private network that terminates an IPsec tunnel, which provides device authentication, confidentiality, and integrity of information traversing a public or untrusted network. The EP is intended to provide a minimal, baseline set of requirements that are targeted at mitigating well defined and described threats to VPN Gateway technology. However, this EP is not complete in itself, but rather extends the collaborative Protection Profile for Network Devices (NDcPP) and the collaborative Protection Profile for Stateful Traffic Filter Firewalls (FWcPP).
Assigned to the following Validated Products
-
VID10917 – Cisco ASA with FirePOWER Services, ASA 9.8 and ASDM 7.8 with FirePOWER Services 6.2
-
VID10951 – Cisco Aggregation Services Router 1000 Series (ASR1K) and Integrated Services Router 4000 Series (ISR4K) running IOS-XE 16.9
-
VID10952 – Cisco Cloud Services Router 1000V (CSR1000V), Aggregation Services Router 1000 Series (ASR1K), Integrated Services Router 1100 Series (ISR1100), and Integrated Services Router 4000 Series (ISR4K) running on IOS-XE 16.9
-
VID10971 – SilentEdge Enterprise Server and GoSilent Client
-
VID10975 – Aruba Mobility Controller Series with ArubaOS 8.2
-
VID10990 – Check Point Software Technologies Ltd. Security Gateway Appliances R80.30
-
VID10996 – Apriva MESA VPN
-
VID11010 – Junos OS 19.2R1 for NFX150
-
VID11012 – Junos OS 19.1R2 for MX series with MultiServices MPC
-
VID11017 – Rugged Crystal Firewall RCS5516FW 9.8
-
VID11028 – SonicWall SonicOS Enhanced V6.5.4 with VPN and IPS on TZ and SOHO Appliances
-
VID11033 – Cisco IR1101 Integrated Services Router
-
VID11035 – Junos OS 19.2R1-S3 for vSRX
-
VID11037 – Junos OS 19.1R2 for MX104 with Multiservices MIC MS-MIC-16G
-
VID11052 – Aruba Remote Access Point Series with Aruba Mobility Controllers, running AOS 8.2
-
Junos OS 19.2R1 for SRX300, SRX320, SRX340, SRX345, SRX345-DUAL-AC and SRX550M Series
-
Junos OS 19.2R1 for SRX1500, SRX4100, SRX4200 and SRX4600 Series
-
Fortinet FortiGate 6000 Series w/ FortiOS 5.6
-
Junos OS 19.2R1-S2 for SRX5400, SRX5600 and SRX5800 Series
-
Cisco ASR 900 Series and NCS4200 Series running IOS-XE 16.9
-
Fortinet FortiGate/FortiOS 6.0.9
Archived Related Technical Decisions
|