2016 Symantec Corporation This document may be freely reproduced & distributed whole & intact including this copyright
notice.
30
SV3800, SV3800B, and SV3800B-20 Security Policy
Authorized Service
Description
CSPs
Force factory default
reset and zeroize keys
Available from the front panel keypad
and from the CLI.
Factory default reset is forced using
the front panel keypad or from the
CLI interface. All CSPs and all data
on the disk are zeroized. The
zeroization occurs while the module
is still in Approved mode. See Section
KEK1 - W
Master keys – W
KEK2s - W
Object encryption keys - W
RSA public key
–
W
RSA private key
–
W
Other entity public keys - W
Key Exchange public keys - W
Key Exchange private keys
–
W
Resigning CA public keys
–
W
Resigning CA private keys - W
Trusted certificate public keys - W
Known public keys - W
Known private keys - W
TLS / SSH session keys - W
Integrity test public key - W
Operator password(s) - W
View status
Keypad can be used to scroll through
status information on the LCD. Status
shown includes network
configuration; segment status;
statistics such as temperatures, fan
speeds, memory utilization, CPU
utilization, load; chassis serial
number; version of NFE firmware
matches expected version.
none
Configure network
settings
Keypad can be used to configure
network settings. Output is displayed
on LCD.
none
Power on/reset
appliance
Front panel buttons can be used to
power on or reset the appliance.
Restarting the appliance includes
validating the firmware. It does not
include unlocking the secure store
with the PIN.
Integrity test public key - RX
Power off appliance
Front panel button can be used to
power of the appliance.
none