Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Announcement: Try the Ask AI chatbot for answers to your technical questions about Juniper products and solutions.

close
header-navigation
keyboard_arrow_up
close
keyboard_arrow_left
Common Criteria Guide for vSRX3.0
Table of Contents Expand all
list Table of Contents
file_download PDF
{ "lLangCode": "en", "lName": "English", "lCountryCode": "us", "transcode": "en_US" }
English
keyboard_arrow_right

Understanding the Common Criteria Evaluated Configuration

date_range 13-Dec-23

This document describes the steps required to duplicate the configuration of the device running Junos OS when the device is evaluated. This is referred to as the evaluated configuration. The following list describes the standards to which the device has been evaluated:

These documents are available at https://www.niap-ccevs.org/Profile/PP.cfm.

Note:

On vSRX3.0, Junos OS Release 22.2R2 is certified for Common Criteria with FIPS mode enabled on the devices.

Understanding Common Criteria

Common Criteria for information technology is an international agreement signed by several countries that permits the evaluation of security products against a common set of standards. In the Common Criteria Recognition Arrangement (CCRA) at http://www.commoncriteriaportal.org/ccra/, the participants agree to mutually recognize evaluations of products performed in other countries. All evaluations are performed using a common methodology for information technology security evaluation.

For more information on Common Criteria, see http://www.commoncriteriaportal.org/.

Supported Platforms for vSRX Virtual Firewall

For the features described in this document, the following platforms are supported: • vSRX3.0 instances

The evaluated configuration for Common Criteria certification includes the following components:

  • HP ProLiant DL380p Gen9 with Intel Xeon E5 with 3 to 8 NICs (at least as many as the number of configured virtual NICs (vNIC) in vSRX3.0)
  • VMWare ESXi 7.0 Hypervisor
  • Junos OS Release 22.2R2 for vSRX3.0 software installed as an ESXi Virtual Machine (VM)
  • Pacstar 451 Model with 4 CPUs x Intel(R) Xeon(R) E-2254ML CPU @ 1.70GHz
Note:

No other VMs may be installed on the ESXi instance. Each vNIC in vSRX3.0 must be mapped to a different physical NIC in the appliance or ESXi.

For more information on vSRX deployment over ESXi, see vSRX Virtual Firewall Deployment Guide for Private and Public Cloud Platforms.

footer-navigation