{"product_id":10181,"v_id":10181,"product_name":"Cisco Security MARS 110 and 110R, Cisco Security MARS 210, and Cisco Security MARS GC2, with Software Version 5.2.4.2487","certification_status":"Not Certified","certification_date":"2008-08-07T00:08:00Z","tech_type":"Enterprise Security Management, Wireless Monitoring","vendor_id":{"name":"Cisco Systems, Inc.","website":"https://www.cisco.com"},"vendor_poc":null,"vendor_phone":"+1 410 309 4862","vendor_email":"certteam@cisco.com","assigned_lab":{"cctl_name":"Arca CCTL"},"product_description":"<p>CS-MARS Version 5.2.4.2487 is an intrusion detection system analyzer [security event monitoring product] that collects data from reporting devices within a distributed network, then analyzes the data to detect incidents.  The CS-MARS (Cisco Secure Monitoring, Analysis, and Response System) appliance collects events from a long list of compatible devices (specified in the Security Target) that includes routers, switches, firewalls, vulnerability scanners, VPN devices, antivirus applications, Windows, Solaris, RedHat Linux, web servers, web proxies, Oracle database server, Cisco ACS, syslog clients, SNMPv1 clients, host IDS applications, and network IDS sensors.  All of these devices act as sensors to the CS-MARS appliance.</p>\r\n<p>The CS-MARS appliances receive event messages, or pull raw data in the form of device logs, alerts, events, and NetFlow communications generated by the sensors. In the context of raw data, an &lsquo;event&rsquo; or &lsquo;event data&rsquo; is an audit record or set of records generated by the reporting device, and is not to be confused with alerts that are generated by the CS-MARS appliance. The CS-MARS appliance compares collected data to security policies created by the CS-MARS administrator to identify possible attacks, security incidents, or other indications of intrusions across the network segments monitored by the reporting devices.</p>\r\n<p>CS-MARS is also capable of compiling configuration information from the sensing networking devices to create a network topology to aid administrators in the analysis of events, and to enable modeling of packet flow throughout the entire network. As raw data is received, it is analyzed within the context of the network topology, and events are correlated and matched to the security policies mentioned above to identify security incidents. CS-MARS can send alert notifications, including emails and pages, to immediately notify individuals of incidents as they are detected.</p>\r\n<p>A web based interface is available to MARS administrators and operators to view event data, modify the configuration, or generate reports.   The web interface visually presents summarized and detailed accounts of each identified security incident. A topology map can be used to indicate hotspots, incidents, the full attack paths, and rule matches. CS-MARS stores raw data collected from sensors to allow for later review, or for generation of reports. Real-time and ad hoc queries can be run that support additional analysis of stored information. Reports can be generated using pre-defined report formats, or customizable formats.</p>\r\n<div style=\"margin: 0pt;\">The evaluated hardware models are the CS-MARS 110 and 110R, CS-MARS 210, and CS-MARS GC2, all of which support CS-MARS software version 5.2.4.2487.  The CS-MARS 5.2.4.2487software includes Oracle database 10.2.0.3, and JBoss application server 3.2.7. The evaluated products can be installed in one of two configurations: one Local Controller (LC) acting alone (also known as a Standalone); or one Global Controller (GC) with one or more LCs.  CS-MARS models 110 and 110R, and the CS-MARS 210 can be installed as LCs. The Global Controller is known as CS-MARS GC2. A GC can be used to remotely manage multiple LCs, whereas direct administrative access to an LC only allows for administration of that Controller. A GC collects and compiles incidents from the LCs it has been configured to manage.  A primary purpose of the GC is to summarize the findings collected by two or more LCs, as a GC does not collect data directly from remote reporting devices.\r\n<p>&nbsp;</p>\r\n<p>The following table identifies supported devices and protocols:</p>\r\n<p>Supported Devices</p>\r\n<p>\r\n<table width=\"550\" cellspacing=\"0\" cellpadding=\"4\" border=\"1\" style=\"border: 1px solid #999; border-collapse: collapse;\">\r\n    <thead>\r\n        <tr>\r\n            <th>Type</th>\r\n            <th>Vendor</th>\r\n            <th>Versions</th>\r\n            <th>Configuration retrieval protocol</th>\r\n            <th>Raw Data retrieval protocol</th>\r\n            <th>Pushed to TOE or Pulled from Sensor</th>\r\n        </tr>\r\n    </thead>\r\n    <tbody>\r\n        <tr>\r\n            <td>\r\n            <p>Router / Switch</p>\r\n            </td>\r\n            <td>\r\n            <p>Cisco IOS</p>\r\n            </td>\r\n            <td>\r\n            <p>11.x, 12.x</p>\r\n            </td>\r\n            <td>\r\n            <p>SSHv1 or SSHv2, SNMPv1</p>\r\n            </td>\r\n            <td>\r\n            <p>Syslog (from device),</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>NetFlow v1,v3,v5,v7</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Cisco CatOS</p>\r\n            </td>\r\n            <td>\r\n            <p>6.x</p>\r\n            </td>\r\n            <td>\r\n            <p>SSHv1 or SSHv2, SNMPv1</p>\r\n            </td>\r\n            <td>\r\n            <p>Syslog (from device)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Extreme Extremeware</p>\r\n            </td>\r\n            <td>\r\n            <p>6.x</p>\r\n            </td>\r\n            <td>\r\n            <p>SNMPv1</p>\r\n            </td>\r\n            <td>\r\n            <p>Syslog (from device)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Firewall</p>\r\n            </td>\r\n            <td>\r\n            <p>Cisco PIX</p>\r\n            </td>\r\n            <td>\r\n            <p>6.0, 6.1, 6.2, 6.3, 7.0</p>\r\n            </td>\r\n            <td>\r\n            <p>SSHv1 or SSHv2, SNMPv1</p>\r\n            </td>\r\n            <td>\r\n            <p>Syslog (from device)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Cisco ASA</p>\r\n            </td>\r\n            <td>\r\n            <p>7</p>\r\n            </td>\r\n            <td>\r\n            <p>SSHv1 or SSHv2, SNMPv1</p>\r\n            </td>\r\n            <td>\r\n            <p>Syslog (from device)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Cisco FWSM</p>\r\n            </td>\r\n            <td>\r\n            <p>1.1, 2.1, 2.2, 2.3</p>\r\n            </td>\r\n            <td>\r\n            <p>SSHv1 or SSHv2, SNMPv1</p>\r\n            </td>\r\n            <td>\r\n            <p>Syslog (from device)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Cisco IOS FW Feature</p>\r\n            </td>\r\n            <td>\r\n            <p>12.2(T) and later</p>\r\n            </td>\r\n            <td>\r\n            <p>SSHv1 or SSHv2, SNMPv1</p>\r\n            </td>\r\n            <td>\r\n            <p>Syslog (from device)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Netscreen</p>\r\n            </td>\r\n            <td>\r\n            <p>3.0, 4.0, 5.0</p>\r\n            </td>\r\n            <td>\r\n            <p>SSHv1 or SSHv2, SNMPv1</p>\r\n            </td>\r\n            <td>\r\n            <p>Syslog (from device)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Checkpoint FW1</p>\r\n            </td>\r\n            <td>\r\n            <p>FP3, FP4, AI</p>\r\n            </td>\r\n            <td>\r\n            <p>CPMI</p>\r\n            </td>\r\n            <td>\r\n            <p>LEA (from Log Server or Management Server)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>&nbsp;</p>\r\n            </td>\r\n            <td>\r\n            <p>Nokia Firewall (running Checkpoint)</p>\r\n            </td>\r\n            <td>\r\n            <p>FP3, FP4, AI</p>\r\n            </td>\r\n            <td>\r\n            <p>CPMI</p>\r\n            </td>\r\n            <td>\r\n            <p>LEA (from Log Server or Management Server)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pulled</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>VPN</p>\r\n            </td>\r\n            <td>\r\n            <p>Cisco VPN 3000</p>\r\n            </td>\r\n            <td>\r\n            <p>4.0, 4.7</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>Syslog (from device)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Network IDS</p>\r\n            </td>\r\n            <td>\r\n            <p>Cisco NIDS, IDSM</p>\r\n            </td>\r\n            <td>\r\n            <p>3.x</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>POP (from device)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pulled</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Cisco NIDS, IDSM</p>\r\n            </td>\r\n            <td>\r\n            <p>4.x</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>RDEP (from device)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pulled</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Cisco IPS, ASA module</p>\r\n            </td>\r\n            <td>\r\n            <p>5.0, 5.1</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>SDEE (from device)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pulled</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Cisco IOS IPS</p>\r\n            </td>\r\n            <td>\r\n            <p>12.2</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>SDEE (from device)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pulled</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>McAfee Intrushield</p>\r\n            </td>\r\n            <td>\r\n            <p>1.5, 1.8</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>SNMP (from Management Server)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Netscreen IDP</p>\r\n            </td>\r\n            <td>\r\n            <p>2.x</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>SNMP (from Management Server)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Symantec Manhunt</p>\r\n            </td>\r\n            <td>\r\n            <p>4.0</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>SNMP (from Device)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>ISS RealSecure</p>\r\n            </td>\r\n            <td>\r\n            <p>6.5, 7.0</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>SNMP (from Device)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Snort</p>\r\n            </td>\r\n            <td>\r\n            <p>1.x, 2.x</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>Syslog (from Device)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Enterasys Dragon</p>\r\n            </td>\r\n            <td>\r\n            <p>6.x</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>Syslog (from Manager)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Host IDS</p>\r\n            </td>\r\n            <td>\r\n            <p>Cisco CSA</p>\r\n            </td>\r\n            <td>\r\n            <p>4.0, 4.5</p>\r\n            </td>\r\n            <td>\r\n            <p>&nbsp;</p>\r\n            </td>\r\n            <td>\r\n            <p>SNMP (from CSA MC)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>McAfee Entercept</p>\r\n            </td>\r\n            <td>\r\n            <p>2.5, 4.x</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>SNMP (from Management Server)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>ISA RealSecure Host Sensor</p>\r\n            </td>\r\n            <td>\r\n            <p>6.5, 7.0</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>SNMP (from Device)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Anti-virus</p>\r\n            </td>\r\n            <td>\r\n            <p>Symantec AV</p>\r\n            </td>\r\n            <td>\r\n            <p>9.x</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>SNMP (from Management Server)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>&nbsp;</p>\r\n            </td>\r\n            <td>\r\n            <p>CICC, Trend Micro OPS</p>\r\n            </td>\r\n            <td>\r\n            <p>11.x- Prg 7.5 &ndash;Engine</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>Syslog (from CICC Server)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>&nbsp;</p>\r\n            </td>\r\n            <td>\r\n            <p>Network Associates</p>\r\n            </td>\r\n            <td>\r\n            <p>8.x</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>SNMP (from Management Server)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Vulnerability Assessment</p>\r\n            </td>\r\n            <td>\r\n            <p>E-eye REM</p>\r\n            </td>\r\n            <td>\r\n            <p>1.x</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>JDBC (MS SQL) (from REM server)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pulled</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Qualys</p>\r\n            </td>\r\n            <td>\r\n            <p>3.4</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>HTTPS</p>\r\n            </td>\r\n            <td>\r\n            <p>Pulled</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Foundstone Foundscan</p>\r\n            </td>\r\n            <td>\r\n            <p>4.x</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>JDBC (MS SQL) (from Management Sever)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pulled</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Host OS</p>\r\n            </td>\r\n            <td>\r\n            <p>Windows</p>\r\n            </td>\r\n            <td>\r\n            <p>NT, 2000, 2003</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>Syslog (from SNARE agent) or MS-RPC event pull</p>\r\n            </td>\r\n            <td>\r\n            <p>Pulled ( in case of MS_RPC)</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Solaris</p>\r\n            </td>\r\n            <td>\r\n            <p>8.x, 9.x, 10.x</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>Syslog (from Device)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Redhat Linux</p>\r\n            </td>\r\n            <td>\r\n            <p>7.x, 8.x</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>Syslog (from Device)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Web Server</p>\r\n            </td>\r\n            <td>\r\n            <p>Microsoft IIS</p>\r\n            </td>\r\n            <td>\r\n            <p>ANY</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>Syslog (from SNARE agent)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Sun iPlanet</p>\r\n            </td>\r\n            <td>\r\n            <p>ANY</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>HTTP (from Protego Agent)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Apache</p>\r\n            </td>\r\n            <td>\r\n            <p>ANY</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>HTTP (from Protego Agent)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Web proxy</p>\r\n            </td>\r\n            <td>\r\n            <p>NetApp Netcache</p>\r\n            </td>\r\n            <td>\r\n            <p>&nbsp;</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>HTTP</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>Database</p>\r\n            </td>\r\n            <td>\r\n            <p>Oracle</p>\r\n            </td>\r\n            <td>\r\n            <p>9i, 10g</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>SQLNet (from Host)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pulled</p>\r\n            </td>\r\n        </tr>\r\n        <tr>\r\n            <td>\r\n            <p>AAA</p>\r\n            </td>\r\n            <td>\r\n            <p>Cisco ACS</p>\r\n            </td>\r\n            <td>\r\n            <p>3.x</p>\r\n            </td>\r\n            <td>\r\n            <p>N/A</p>\r\n            </td>\r\n            <td>\r\n            <p>Syslog (from Protego Agent)</p>\r\n            </td>\r\n            <td>\r\n            <p>Pushed</p>\r\n            </td>\r\n        </tr>\r\n    </tbody>\r\n</table>\r\n</p>\r\n<p>Note: Some of the sensor devices supported by the evaluated product use non-secure protocols (HTTP, Syslog, SNMPv1, OPSEC-LEA, OPSEC-CPMI, POP, MS-RPC, SQLNet) for raw data transfer to CS-MARS. The authorized administrator must ensure that appropriate measures are taken in the IT Environment to protect this data in transit.</p>\r\n</div>","evaluation_configuration":null,"security_evaluation_summary":"<p>The evaluation was carried out in accordance with the Arca Common Criteria Test Laboratory processes and procedures that are compliant with the Common Criteria Evaluation and Validation Scheme (CCEVS). The evaluation demonstrated that the Auditing, Identification and Authentication, External Device Communication, Administration, Reporting, Analysis, Reaction, and Self Protection of CS-MARS met the security requirements contained in the Security Target.  The criteria against which CS-MARS was judged are described in the Common Criteria for Information Technology Security Evaluation, Version 2.3 Part II and Part III. The evaluation team conducted the evaluation using the Common Methodology for Information Technology Security Evaluation, Version 2.3.</p>\r\n<p>Arca CCTL concluded that the Common Criteria requirements for Evaluation Assurance Level (EAL) 2 have been met.  The product, configured as outlined in the Secure Installation Guidance (Installation, Generation, and Start-Up Documentation), satisfies all of the security functional requirements stated in the Security Target.  A Validation Team, on behalf of CCEVS, monitored the evaluation, which completed in June 2008. Results of the evaluation can be found in the Validation Report prepared by the National Information Assurance Partnership (NIAP) CCEVS Validation Team.</p>","environmental_strengths":"<p>Remote administration of Global and Local Controllers requires secure channels using SSLv2 or SSLv3. Connectivity between a Global Controller and Local Controllers uses SSLv3.</p>\r\n<p>Note: The cryptography used in this product has not been FIPS certified nor has it been analyzed or tested to conform to cryptographic standards during this evaluation. All cryptography has only been asserted as tested by the vendor</p>","features":[]}