Crypto Officer Guide
There are two categories of users in JUNOS-FIPS:
- JUNOS-FIPS User—Configures the system and performs all non-JUNOS-FIPS-related operations.
- Crypto Officer—Zeroizes the system, authorizes AS II FIPS PICs for operation, and displays the status of installed AS II FIPS PICs. Only the Crypto Officer can load the JUNOS-FIPS software and establish initial user profiles and IP Security (IPSec) parameters.
This chapter describes how a Crypto Officer configures a Juniper Networks router running JUNOS-FIPS and administers the system in a secure manner.
This chapter discusses the following topics:
- List of Algorithms
- Crypto Officer Responsibilities
- User Assumptions and Responsibilities
- Passwords and Supported Cipher Sets
- Remote Access
- Removing Old Passwords
- Zeroizing the System
- Crypto Officer and JUNOS-FIPS User Configurations
- Configuring Internal IPSec
- Example: Configuring IPSec
- Internal IPsec Configuration Statements
- Command Summary