Juniper Networks SSG 5 and SSG 20 Security Policy
Overview
The SSG 5 and SSG 20 are high-performance security platforms for small branch and standalone
businesses that want to stop internal and external attacks, prevent unauthorized access and achieve
regulatory compliance. Both the SSG 5 and SSG 20 deliver 160 Mbps of stateful firewall traffic and 40
Mbps of IPSec VPN traffic.
The general components of the SSG 5 and SSG 20 include firmware and hardware. The main
hardware components consist of a main processor, memory, flash, 10/100 Mbps Ethernet interface,
console interface and power supply.
The entire case is defined as the cryptographic boundary of the module. The SSG 5/20 series physical
configuration is defined as a multi-chip standalone module. The chips are production-grade quality
and include standard passivation techniques. The SSG 5/20 series conforms to FCC part 15, class B.
Fig. 1: SSG 5
Fig. 2: SSG 20
Validation Level
The following table lists the validation level for each FIPS 140-2 area.
Table 1: Module Validation Level
Security Requirements Section Level
Cryptographic Module Specification
Cryptographic Module Ports and Interfaces 2
Roles, Services, and Authentication 2