Component
|
Brand(s) Used
|
Version
|
Firewall
|
Cisco Integrated Services Router (FWSM Firewall), Cisco ASA
|
• FWSM v3.1(3)
• ASA 7.2.(2)
|
Network IDS
|
Cisco Integrated Services Router (integrated IDS/IPS), IDSM2
|
IOS v12.3(11r)T2, 12.4(1r), IDSM 6.0.(2)E1
|
Router
|
Cisco Integrated Services Router (IOS Firewall), Cisco 7206VXR
|
IOS v12.2(18)SXF10a, v12.3(11r)T2, 12.4(1r), 12.4(11)T3 (VXR)
|
Wireless AP
|
Cisco 1131AG, 1242AG
|
|
Wireless Controller
|
AIR-LAP1131AG-A-K9, AIR-LAP1242AG-A-K9
|
IOS 12.3(11)JA
|
Windows Server
|
Windows Server 2003
|
SP1, SP2
|
ECOM Web Server (demo server)
|
Foundstone Hackme Bank
|
v2.0
|
Database
|
N/A - Not reviewed/Not in scope
|
|
Windows Server Anti-Virus
|
McAfee VirusScan Enterprise + Anti-spyware Module
|
8.0.0
|
Firewall, Router, Switch, IDS/IPS Management
|
Cisco Security Manager (CS-M), Cisco ASDM, Cisco IDM
|
CS-M v3.0.1, ASDM v5.2.(2), IDM v6.0.2
|
Router, Switch management
|
CiscoWorks (LMS), CiscoWorks (C-NCM)
|
LMS v2.6, NCM v1.2.1
|
Desktop/Server Firewall (Host-based firewall)
|
Cisco Security Agent (CSA)
|
v5.1.0.69, v5.2.0.210
|
Central Logging / Correlation /Analysis
|
CS-MAR
|
CS-MARS (v4.3.1)
|
Wireless Management
|
Wireless Control System (WCS)
|
v4.1
|
AAA (TACACS+) authentication
|
CS-ACS
|
v4.0(1) Build 27
|
Web Services (application) firewall
|
Cisco ACE XML Gateway
|
V5
|
Load Balancer
|
Cisco ACE Load Balancer
|
V3.0(0)A1(4a)
|
Two-factor Authentication
|
RSA SecurID (RSA Authentication Manager)
|
V6.1(300)
|
RSA Key Manager Authentication
|
RSA Access Manager
|
v6.0
|
Desktop E-mail Encryption
|
N/A - not in scope
|
|
File Integrity
|
Cisco Security Agent (CSA)
|
v5.1
|
Cardholder Storage Encryption
|
• NCR-ACS (128-bit 3DES)
• RSA Key Manager (192-bit 3DES, 128-bit, 192-bit, 256-bit AES)
• RSA File Security Manager (192-bit 3DES, 256-bit AES)
• RSA enVision
|
• NCR-ACS v6.01.04.16
• RSA Key Manager v2.1.1
• RSA File Security Manager v2.1.0.9
• enVision (v3.5.1)
|