808bits

Aruba AP-92, AP-93, AP-104, AP-105 and AP-175 Wireless Access Points

FIPS 140-2 certificate #2227 · Aruba a Hewlett Packard Enterprise Company · data as of 2026-08-28
Historical. 186-2 transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode with tamper evident labels installed as indicated in the Security Policy. The module generates cryptographic keys whose strengths are modified by available entropy

Certificate

Certificate number2227
StandardFIPS 140-2
Statushistorical
Overall level2
Module typeHardware
EmbodimentMulti-chip standalone
VendorAruba a Hewlett Packard Enterprise Company · website
Hardware versionsAP-92-F1 [1], AP-93-F1 [1], AP-104-F1 [1][2], AP-105-F1 [1][2], AP-175P-F1 [1][2], AP-175AC-F1 [1][2] and AP-175DC-F1 [1][2] with FIPS kit 4011570-01
Firmware versionsArubaOS 6.4.4-FIPS [1] and ArubaOS 6.5.0-FIPS [2]

Module description

Aruba's Wi-Fi access points serve as secure network on-ramps, aggregating wireless user traffic and forwarding it to Aruba's highly secure Mobility Controllers, where per-user role based access controls are applied through an integrated firewall. In FIPS 140-2 Mode, Aruba APs in conjunction with the Mobility Controller support the IEEE 802.11i/WPA2 client standard along with optional Suite B cryptography. Aruba APs also provide wireless intrusion detection/prevention services, support wireless mesh topologies, and have Wi-Fi Alliance certification for IEEE 802.11a/b/g/n.

Security level exceptions

  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES2450, 2677, 2680, 2689
CVL150, 152
DRBG433
ECDSA466, 469
HMAC1663, 1666
KBKDF16
RSA1376, 1379, 1380
SHS2246, 2249, 2250
Triple-DES1605, 1607

Other algorithms

Diffie-Hellman (key agreement; key establishment methodology provides 112 bits of encryption strength; non-compliant less than 112 bits of encryption strength); EC Diffie-Hellman (key agreement; key establishment methodology provides 128 or 192 bits of encryption strength); MD5; NDRNG

Validation history

DateTypeLab
2014-08-26InitialLeidos Accredited Testing & Evaluation (AT&E) Lab
2015-03-20UpdateLeidos Accredited Testing & Evaluation (AT&E) Lab
2016-01-28UpdateLeidos Accredited Testing & Evaluation (AT&E) Lab
2016-07-06UpdateLeidos Accredited Testing & Evaluation (AT&E) Lab

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2014-08-26, 2015-03-20, 2016-01-28, 2016-07-06

Source documents