Cisco Cat4K NDPP ST
11 March 2014
EDCS-1228241
64
TOE SFRs
How the SFR is Met
server key
Overwritt
en with:
0x0d
RNG
Seed
ANSI
X9.31
Append
ix
2.4
using
3-key
TDES
16 bytes
This is the seed
for
ANSI
X9.31 RNG
DRAM
(plainte
xt)
Zeroized
upon
power
cycle the
device
RNG
Seed Key
ANSI
X9.31
Append
ix
2.4
using
3-key
TDES
24 bytes
This is the seed
key for ANSI
X9.31 RNG
DRAM
(plainte
xt)
Zeroized
upon
power
cycle the
device
Diffie-
Hellman
private
exponent
DH
1024-4096
bits
The
private
exponent used
in
Diffie-
Hellman (DH)
exchange.
DRAM
(plainte
xt)
Zeroized
upon
completio
n of DH
exchange.
Overwritt
en with:
0x00
Diffie-
Hellman
Shared
Secret
DH
1024-4096
bits
This
is
the
shared
secret
agreed upon as
part
of
DH
exchange
DRAM
(plainte
xt0
Automati
cally after
completio
n of DH
exchange.
Overwritt
en with:
0x00
SSH
SSH RSA
private
key
RSA
1024/1536/
2048 bits
modulus
SSH key
NVRA
M
(plainte
xt)
Zeroized
using the
following
command
:
# crypto
key
zeroize
rsa
Overwritt
en with:
0x00
SSH
session
key
Triple-
DES/A
ES
168-
bits/256-
bits
This is the SSH
session
symmetric key.
DRAM
(plainte
xt)
Automati
cally
when the
SSH
session is
terminate