808bits

Aruba 200, 800, and 6000/SCII Mobility Controllers with ArubaOS FIPS Firmware

FIPS 140-2 certificate #1077 · Aruba Networks, Inc. · data as of 2026-08-28
Historical. RNG SP800-131A Revision 1 Transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode and with the tamper evident seals installed as indicated in the Security Policy

Certificate

Certificate number1077
StandardFIPS 140-2
Statushistorical
Overall level2
Module typeHardware
EmbodimentMulti-chip standalone
VendorAruba Networks, Inc. · website
Hardware versions200: 200-6-AOS-STD-FIPS-US; 800: 800-16-TX-AOS-STD-FIPS or 800-16-SX-AOS-STD-FIPS; 6000: (6000-BASE-2PSU-200-FIPS or 6000-BASE-2PSU-400-FIPS) with [(minimum one: LC-2G-1, LC-2G24F-1 or LC-2G24FP-1) and (minimum one: SC-48-C1-1, SC-128-C1-1 or SC-256-C2-1)] (no more than four total)
Firmware versions200: A200_3.3.2.0-FIPS, A200_3.3.2.11-FIPS, A200_3.3.2.14-FIPS, A200_3.3.2.18-FIPS, A200_3.3.2.19-FIPS, A200_3.3.2.20-FIPS A200_3.3.2.21-FIPS, A200_3.4.2.3-FIPS, A200_3.4.4.0-FIPS or A200_3.4.5.1-FIPS; 800: A800_3.3.2.0-FIPS, A800_3.3.2.11-FIPS, A800_3.3.2.14-FIPS, A800_3.3.2.18-FIPS, A800_3.3.2.19-FIPS, A800_3.3.2.20-FIPS, A800_3.3.2.21-FIPS, A800_3.4.2.3-FIPS, A800_3.4.4.0-FIPS or A800_3.4.5.1-FIPS; 6000: A5000_3.3.2.0-FIPS, A5000_3.3.2.11-FIPS, A5000_3.3.2.14-FIPS, A5000_3.3.2.18-FIPS, A5000_3.3.2.19-FIPS, A5000_3.3.2.20-FIPS, A5000_3.3.2.21-FIPS, A5000_3.4.2.3-FIPS, A5000_3.4.4.0-FIPS or A5000_3.4.5.1-FIPS

Module description

Aruba Networks' Mobility Controller system with an integrated ICSA-certified stateful firewall and hardware-based encryption, is the industry's highest performing and most scalable enterprise mobility platform on the market today. Aruba offers the industry's only modular and stackable mobility controllers from every enterprise environment. Now, administrators are freed from the costly and time-consuming process of managing individual APs. And as security standards change and new mobile services emerge, they are easily implemented at the controller and propagated throughout the enterprise.

Approved algorithms

AlgorithmCAVP certificate
AES649, 650, 651, 700
HMAC334, 335, 336, 378
RNG411
RSA326
SHS682, 683, 684, 728
Triple-DES600, 601, 602, 631

Other algorithms

DES; MD5; RC4; Diffie-Hellman (key agreement; key establishment methodology provides 80 bits of encryption strength; non-compliant); RSA (key wrapping; key establishment methodology provides 80 bits of encryption strength; non-compliant)

Validation history

DateTypeLab
2008-12-24InitialSAIC-VA
2009-03-30Update
2009-07-29Update
2009-10-23Update
2010-10-25UpdateSAIC-VA
2011-01-07UpdateSAIC-VA
2011-03-14Update
2011-07-19UpdateSAIC-VA
2013-02-06UpdateLeidos Accredited Testing & Evaluation (AT&E) Lab

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2008-12-24, 2009-03-30, 2009-07-29, 2009-10-23, 2010-10-25, 2011-01-07, 2011-03-14, 2011-07-19, 2013-02-06

Source documents