{"product_id":11672,"v_id":11672,"product_name":"Cisco Secure Network Analytics (SNA) 7.5","certification_status":"Certified","certification_date":"2026-07-17T00:00:00Z","tech_type":"Network Device","vendor_id":{"name":"Cisco Systems, Inc.","website":"https://www.cisco.com"},"vendor_poc":"Ryan Nottingham","vendor_phone":"408-526-4000","vendor_email":"certteam@cisco.com","assigned_lab":{"cctl_name":"Gossamer Security Solutions"},"product_description":"<p style=\"margin: 0in 0in 6pt; text-align: justify; line-height: 11pt; font-size: 10pt; font-family: Times, serif;\">The Cisco Secure Network Analytics (SNA) TOE is a centrally managed system of distributed components for collection, storage, and analysis, of network telemetry data.&nbsp; Cisco Secure Network Analytics (SNA) is a set of distributed network appliances including a central management appliance that manages all the distributed appliances, which may be physical and/or virtual appliances.&nbsp; SNA provides visibility and security analytics (threat detection, and threat response) using network traffic telemetry data.&nbsp; SNA can generate telemetry data directly (by directly monitoring traffic flows) or can collect telemetry data generated by devices in an existing network infrastructure.</p>","evaluation_configuration":"<div class=\"WordSection1\">\r\n<p style=\"margin: 0in 0in 6pt; text-align: justify; line-height: 11pt; font-size: 10pt; font-family: Times, serif;\">The evaluated configurations of the TOE consist of one SNA Manager, one or more Flow Collectors (FC), and one or more Flow Sensors (FS).&nbsp; Each of the TOE components are available as a stand-alone physical appliance, or as a virtual appliance.&nbsp; The physical and virtual appliances provide equivalent functionality, and a mixture of physical and virtual appliances can be deployed together.</p>\r\n<p style=\"margin: 0in 0in 6pt; text-align: justify; line-height: 11pt; font-size: 10pt; font-family: Times, serif;\">The evaluated configuration consists of the following hardware models all running SNA software release 7.5:</p>\r\n<table class=\"MsoTableGrid\" style=\"border-collapse: collapse; border: none;\" border=\"1\" cellspacing=\"0\" cellpadding=\"0\">\r\n<thead>\r\n<tr>\r\n<td style=\"width: 112.25pt; border: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\"><strong>SNA Appliance Type</strong></p>\r\n</td>\r\n<td style=\"width: 99.0pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\"><strong>Part Number</strong></p>\r\n</td>\r\n<td style=\"width: 135.0pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\"><strong>Server platform</strong></p>\r\n</td>\r\n<td style=\"width: 121.25pt; border: solid windowtext 1.0pt; border-left: none; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\"><strong>Entropy Source</strong></p>\r\n</td>\r\n</tr>\r\n</thead>\r\n<tbody>\r\n<tr>\r\n<td style=\"width: 112.25pt; border: solid windowtext 1.0pt; border-top: none; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">SNA Manager</p>\r\n</td>\r\n<td style=\"width: 99.0pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">ST-SMC2300-K9</p>\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">L-ST-SMC-VE-K9</p>\r\n</td>\r\n<td style=\"width: 135.0pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt;\" rowspan=\"3\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">&nbsp;UCSC-C225-M6SX</p>\r\n</td>\r\n<td style=\"width: 121.25pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt;\" rowspan=\"3\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">JENT</p>\r\n</td>\r\n</tr>\r\n<tr>\r\n<td style=\"width: 112.25pt; border: solid windowtext 1.0pt; border-top: none; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">SNA Flow Sensor</p>\r\n</td>\r\n<td style=\"width: 99.0pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">ST-FS1300-K9</p>\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">ST-FS3300-K9</p>\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">ST-FS4300-K9</p>\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">L-ST-FS-VE-K9</p>\r\n</td>\r\n</tr>\r\n<tr>\r\n<td style=\"width: 112.25pt; border: solid windowtext 1.0pt; border-top: none; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">SNA Flow Collector</p>\r\n</td>\r\n<td style=\"width: 99.0pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">ST-FC4300-K9</p>\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">L-ST-FC-VE-K9</p>\r\n</td>\r\n</tr>\r\n</tbody>\r\n</table>\r\n<p style=\"margin: 0in 0in 6pt; text-align: justify; line-height: 11pt; font-size: 10pt; font-family: Times, serif;\">&nbsp;</p>\r\n</div>\r\n<p><span style=\"font-size: 10.0pt; font-family: Times, serif;\">&nbsp;</span></p>\r\n<p style=\"margin: 0in 0in 6pt; text-align: justify; line-height: 11pt; font-size: 10pt; font-family: Times, serif;\">&nbsp;</p>","security_evaluation_summary":"<p style=\"text-align: justify; margin: 0in; font-size: 10pt; font-family: Times, serif;\">The evaluation was carried out in accordance to the Common Criteria Evaluation and Validation Scheme (CCEVS) requirements and guidance.&nbsp; The evaluation demonstrated that the TOE<em> </em>meets the security requirements contained in the Security Target.&nbsp; The criteria against which the TOE was judged are described in the Common Criteria for Information Technology Security Evaluation, Version 3.1, Revision 5, April 2017. The evaluation methodology used by the evaluation team to conduct the evaluation is the Common Methodology for Information Technology Security Evaluation, Evaluation Methodology, Version 3.1, Revision 5, April 2017.&nbsp; The product, when delivered and configured as identified in the Cisco Secure Network Analytics (SNA) 7.5 Preparative Procedures &amp; Operational User Guide for the Common Criteria Certified Configuration, Version 1.0, June 23, 2026 document, satisfies all of the security functional requirements stated in the Cisco Secure Network Analytics (SNA) 7.5 Security Target, Version 1.2, July 13, 2026.&nbsp; The project underwent CCEVS Validator review.&nbsp; The evaluation was completed in July 2026.&nbsp; Results of the evaluation can be found in the Common Criteria Evaluation and Validation Scheme Validation Report (report number CCEVS-VR-VID11672-2026) prepared by CCEVS.</p>","environmental_strengths":"<p style=\"text-align: justify; margin: 0in; font-size: 10pt; font-family: Times, serif;\">The logical boundaries of the Secure Network Analytics (SNA) are realized in the security functions that it implements. Each of these security functions is summarized below.</p>\r\n<p style=\"text-align: justify; margin: 0in; font-size: 10pt; font-family: Times, serif;\">&nbsp;</p>\r\n<p style=\"text-align: justify; margin: 0in; font-size: 10pt; font-family: Times, serif;\"><strong>Security audit:</strong></p>\r\n<p style=\"text-align: justify; margin: 0in; font-size: 10pt; font-family: Times, serif;\">The Cisco Secure Network Analytics provides extensive auditing capabilities. The TOE can audit events related to cryptographic functionality, identification and authentication, and administrative actions.&nbsp; The Cisco Secure Network Analytics generates an audit record for each auditable event.&nbsp; Each security relevant audit event has the date, timestamp, event description, and subject identity.&nbsp; The administrator configures auditable events, configures secure transmission of audit records to a remote audit server, and manages audit data storage.&nbsp; The TOE provides the administrator with a local circular audit trail.&nbsp; Audit messages are stored locally and transmitted over an encrypted channel to an external audit server.</p>\r\n<p style=\"text-align: justify; margin: 0in; font-size: 10pt; font-family: Times, serif;\">&nbsp;</p>\r\n<p style=\"text-align: justify; margin: 0in; font-size: 10pt; font-family: Times, serif;\"><strong>Communication:</strong></p>\r\n<p style=\"text-align: justify; margin: 0in; font-size: 10pt; font-family: Times, serif;\">The TOE allows authorized administrators to control which SNA appliance (FC, and FS) is managed by the Manager. This is performed through a registration process over TLS. The administrator can also de-register an appliance if he or she wishes to no longer manage it through the Manager.&nbsp; For this TOE the process of registration/joining a new managed appliance (FC, FS) to the Manager is manually initiated by the administrator installing each appliance.&nbsp; The initial TLS connection is authenticated to the Manager using the Manager administrator&rsquo;s username/password, at which point the appliances exchange their X.509 certificates, and from that point forward all TLS communications among appliances are authenticated using X.509 certificates.</p>\r\n<p style=\"text-align: justify; margin: 0in; font-size: 10pt; font-family: Times, serif;\">&nbsp;</p>\r\n<p style=\"text-align: justify; margin: 0in; font-size: 10pt; font-family: Times, serif;\"><strong>Cryptographic support:</strong></p>\r\n<p style=\"margin: 0in 0in 6pt; text-align: justify; line-height: 11pt; font-size: 10pt; font-family: Times, serif;\"><span style=\"font-family: 'Times New Roman', serif;\">The TOE provides cryptography in support of other Cisco </span><span style=\"font-family: 'Times New Roman', serif;\">SNA</span><span style=\"font-family: 'Times New Roman', serif;\"> security functionality.&nbsp; This cryptography has been validated by the NIST CAVP.</span></p>\r\n<p style=\"margin: 0in 0in 6pt; text-align: justify; line-height: 11pt; font-size: 10pt; font-family: Times, serif;\"><span style=\"font-family: 'Times New Roman', serif;\">The TOE provides cryptography in support for TLS, which is used for remote administrative management, and secure communication among TOE components, and connects from the TOE to LDAP and syslog servers.&nbsp; The cryptographic services provided by the TOE are described below.</span></p>\r\n<div align=\"center\">\r\n<table class=\"MsoNormalTable\" style=\"width: 6.5in; border-collapse: collapse; border: none;\" border=\"1\" cellspacing=\"0\" cellpadding=\"0\">\r\n<thead>\r\n<tr>\r\n<td style=\"width: 176.95pt; border: solid windowtext 1.0pt; background: #E6E6E6; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 3pt 0in; font-size: 10pt; font-family: Times, serif;\"><strong><span style=\"color: black;\">Cryptographic Method</span></strong></p>\r\n</td>\r\n<td style=\"width: 291.05pt; border: solid windowtext 1.0pt; border-left: none; background: #E6E6E6; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 3pt 0in; font-size: 10pt; font-family: Times, serif;\"><strong><span style=\"color: black;\">Use within the TOE</span></strong></p>\r\n</td>\r\n</tr>\r\n</thead>\r\n<tbody>\r\n<tr>\r\n<td style=\"width: 176.95pt; border: solid windowtext 1.0pt; border-top: none; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">AES</p>\r\n</td>\r\n<td style=\"width: 291.05pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">Used to encrypt TLS session traffic.</p>\r\n</td>\r\n</tr>\r\n<tr>\r\n<td style=\"width: 176.95pt; border: solid windowtext 1.0pt; border-top: none; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">ECDH</p>\r\n</td>\r\n<td style=\"width: 291.05pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">Used to provide key exchange in TLS.</p>\r\n</td>\r\n</tr>\r\n<tr>\r\n<td style=\"width: 176.95pt; border: solid windowtext 1.0pt; border-top: none; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">RSA Signature Services</p>\r\n</td>\r\n<td style=\"width: 291.05pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">X.509 certificate signing and verification.</p>\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">Data signing and verification in TLS.</p>\r\n</td>\r\n</tr>\r\n<tr>\r\n<td style=\"width: 176.95pt; border: solid windowtext 1.0pt; border-top: none; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">HMAC</p>\r\n</td>\r\n<td style=\"width: 291.05pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">Used for keyed hash, integrity services in TLS session establishment.</p>\r\n</td>\r\n</tr>\r\n<tr>\r\n<td style=\"width: 176.95pt; border: solid windowtext 1.0pt; border-top: none; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">DRBG</p>\r\n</td>\r\n<td style=\"width: 291.05pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<ul style=\"margin-bottom: 0in; margin-top: 0px;\">\r\n<li style=\"margin: 0in 0in 0in 0px; font-size: 10pt; font-family: Times, serif;\">Used for random number generation</li>\r\n<li style=\"margin: 0in 0in 0in 0px; font-size: 10pt; font-family: Times, serif;\">Used in TLS session establishment.</li>\r\n</ul>\r\n</td>\r\n</tr>\r\n<tr>\r\n<td style=\"width: 176.95pt; border: solid windowtext 1.0pt; border-top: none; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">SHA</p>\r\n</td>\r\n<td style=\"width: 291.05pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">Used to provide TLS traffic integrity verification</p>\r\n</td>\r\n</tr>\r\n<tr>\r\n<td style=\"width: 176.95pt; border: solid windowtext 1.0pt; border-top: none; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\"><em><span style=\"font-family: Times, serif;\">Transport Layer Security (TLS)</span></em></p>\r\n</td>\r\n<td style=\"width: 291.05pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; padding: 0in 5.4pt 0in 5.4pt;\">\r\n<p style=\"margin: 0in; font-size: 10pt; font-family: Times, serif;\">Used in TLS session establishment.</p>\r\n</td>\r\n</tr>\r\n</tbody>\r\n</table>\r\n</div>\r\n<p style=\"margin: 0in 0in 6pt; text-align: justify; line-height: 11pt; font-size: 10pt; font-family: Times, serif;\">&nbsp;</p>\r\n<p style=\"text-align: justify; margin: 0in; font-size: 10pt; font-family: Times, serif;\"><span style=\"font-family: 'Times New Roman', serif;\">During initial installation each TOE component generates its own unique self-signed X.509v3 certificate, and during initial configuration all those certificates are replaced with new CA-signed identity certificates which are then used for all TLS connections including mutual authentication of TLS connections among TOE components.&nbsp; Configuration of trust stores for all components is performed via the Central Management WebUI of the Manager, but each TOE component generates its own unique keypair and its own certificate signing requests (CSR), and imports (via the Central Management WebUI of the Manager) TLS certificates that have been signed by an external CA server. </span></p>\r\n<p style=\"text-align: justify; margin: 0in; font-size: 10pt; font-family: Times, serif;\">&nbsp;</p>\r\n<p style=\"text-align: justify; margin: 0in; font-size: 10pt; font-family: Times, serif;\"><strong>Identification and authentication:</strong></p>\r\n<p style=\"margin: 0in 0in 6pt; text-align: justify; line-height: 11pt; font-size: 10pt; font-family: Times, serif;\"><span style=\"font-family: Times, serif;\">TOE components perform two types of authentication: password-based authentication of administrators for remote administration of the TOE; and certificate-based authentication of devices.&nbsp; Device-level authentication allows TOE components to establish secure channels with other TOE components, and with external servers (LDAP and syslog).&nbsp; </span></p>\r\n<p style=\"margin: 0in 0in 6pt; text-align: justify; line-height: 11pt; font-size: 10pt; font-family: Times, serif;\"><span style=\"font-family: Times, serif;\">The TOE provides administrator authentication against a local user database.&nbsp; Password-based authentication can be performed on the serial console, and the GUI (accessible via HTTPS/TLS).&nbsp; For authentication to the GUI, the TOE optionally supports use of a AAA server (using LDAP over TLS), which would be outside the TOE boundary.</span></p>\r\n<p style=\"margin: 0in 0in 6pt; text-align: justify; line-height: 11pt; font-size: 10pt; font-family: Times, serif;\"><span style=\"font-family: Times, serif;\">The TOE requires Authorized Administrators to authenticate prior to being granted access to any of the management functionality.&nbsp; The TOE can be configured to require a minimum password length of 8 to 256 characters.&nbsp; </span></p>\r\n<p style=\"margin: 0in 0in 6pt; text-align: justify; line-height: 11pt; font-size: 10pt; font-family: Times, serif;\"><span style=\"font-family: Times, serif;\">After a configurable number of incorrect login attempts at administrative interfaces where authentication is processed locally (i.e. where LDAP is not used), the TOE will lock the offending account until an Administrator defined time period has elapsed.</span></p>\r\n<p style=\"text-align: justify; margin: 0in; font-size: 10pt; font-family: Times, serif;\"><strong>Security management:</strong></p>\r\n<p style=\"margin: 0in 0in 6pt; text-align: justify; line-height: 11pt; font-size: 10pt; font-family: Times, serif;\"><span style=\"font-family: Times, serif;\">The TOE provides secure administrative services for management of general TOE configuration and the security functionality provided by the TOE.&nbsp; All TOE administration occurs either through a secure HTTPS/TLS session or via a local console connection.&nbsp; The TOE provides the ability to securely manage all TOE administrative users; all identification and authentication; all audit functionality of the TOE; all TOE cryptographic functionality; the timestamps maintained by the TOE; and updates to the TOE.&nbsp; </span></p>\r\n<p style=\"margin: 0in 0in 6pt; text-align: justify; line-height: 11pt; font-size: 10pt; font-family: Times, serif;\"><span style=\"font-family: Times, serif;\">When an administrative session is initially established, the TOE displays an administrator-configurable warning banner.&nbsp; This is used to provide any information deemed necessary by the administrator.&nbsp; After a set amount of time of inactivity, the administrator will be locked out of the administrator interface.&nbsp; </span></p>\r\n<p style=\"text-align: justify; margin: 0in; font-size: 10pt; font-family: Times, serif;\"><strong>Protection of the TSF:</strong></p>\r\n<p style=\"margin: 0in 0in 6pt; text-align: justify; line-height: 11pt; font-size: 10pt; font-family: Times, serif;\"><span style=\"font-family: Times, serif;\">The TOE protects against interference and tampering by untrusted subjects by implementing identification, authentication, and access controls to limit configuration to Authorized Administrators.&nbsp; The TOE prevents reading of plaintext cryptographic keys and passwords.&nbsp; </span></p>\r\n<p style=\"margin: 0in 0in 6pt; text-align: justify; line-height: 11pt; font-size: 10pt; font-family: Times, serif;\"><span style=\"font-family: Times, serif;\">The TOE internally maintains the date and time.&nbsp; This date and time is used as the timestamp that is applied to audit records generated by the TOE.&nbsp; Administrators can update the TOE&rsquo;s clock manually.&nbsp; </span></p>\r\n<p style=\"margin: 0in 0in 6pt; text-align: justify; line-height: 11pt; font-size: 10pt; font-family: Times, serif;\"><span style=\"font-family: Times, serif;\">The TOE is able to verify any software updates prior to the software updates being installed on the TOE to avoid the installation of unauthorized software.&nbsp; The TOE performs self-testing to verify correct operation of its cryptographic module.&nbsp; The TOE components are not general-purpose operating systems; root access is not permitted, external software applications cannot be installed, and access to memory space is restricted to TOE functions.</span></p>\r\n<p style=\"margin: 0in 0in 6pt; text-align: justify; line-height: 11pt; font-size: 10pt; font-family: Times, serif;\"><span style=\"font-family: Times, serif;\">The TOE is distributed, including multiple appliances that communicate with each other over a network.&nbsp; These internal TOE communications between TOE components are protected within TLS and authenticated using X.509 certificates.</span></p>\r\n<p style=\"text-align: justify; margin: 0in; font-size: 10pt; font-family: Times, serif;\"><strong>TOE access:</strong></p>\r\n<p style=\"margin: 0in 0in 6pt; text-align: justify; line-height: 11pt; font-size: 10pt; font-family: Times, serif;\"><span style=\"font-family: Times, serif;\">The TOE can terminate inactive sessions after an Authorized Administrator configurable time-period.&nbsp; Once a session has been terminated the TOE requires the user to re-authenticate to establish a new session.&nbsp; </span></p>\r\n<p style=\"margin: 0in 0in 6pt; text-align: justify; line-height: 11pt; font-size: 10pt; font-family: Times, serif;\"><span style=\"font-family: Times, serif;\">The TOE can also display an Authorized Administrator specified banner on the CLI management interface and the WebUI prior to allowing any administrative access to the TOE.</span></p>\r\n<p style=\"text-align: justify; margin: 0in; font-size: 10pt; font-family: Times, serif;\"><strong>Trusted path/channels:</strong></p>\r\n<p style=\"margin: 0in 0in 6pt; text-align: justify; line-height: 11pt; font-size: 10pt; font-family: Times, serif;\"><span style=\"font-family: Times, serif;\">The TOE establishes a trusted path with syslog servers using TLS, and with LDAP servers using TLS.&nbsp; Remote administration of the TOE uses TLS/HTTPS.&nbsp; All communications between TOE components are protected within TLS; the initial joining of TOE components is authenticated using a username and password that&rsquo;s manually entered during the joining process, and subsequent communications between TOE components are automatically authenticated using X.509 certificates.</span></p>","features":[{"id":5612,"feature_name":"Auditing"},{"id":5613,"feature_name":"Certificate Validation"},{"id":5615,"feature_name":"Cryptograhic Key Generation"},{"id":5616,"feature_name":"Cryptographic Signature Generation"},{"id":5617,"feature_name":"Cryptographic Signature Verification"},{"id":5614,"feature_name":"Hashing"},{"id":5624,"feature_name":"Keyed-hash message authentication"},{"id":5623,"feature_name":"Network Device"},{"id":5618,"feature_name":"TLS 1.2"},{"id":5619,"feature_name":"TLS 1.3"},{"id":5620,"feature_name":"TLS Client with Mutual Authentication"},{"id":5621,"feature_name":"TLS Server with Mutual Authentication"},{"id":5622,"feature_name":"Trusted Update Function"}]}