808bits

Aruba AP-324 and AP-325 Wireless Access Points

FIPS 140-2 certificate #2989 · Aruba, a Hewlett Packard Enterprise company · data as of 2026-09-08

Aruba AP-324 and AP-325 Wireless Access Points, from Aruba, a Hewlett Packard Enterprise company, holds FIPS 140-2 certificate #2989 at overall level 2. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.

Historical. SP 800-56Arev3 transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode with tamper evident labels installed as indicated in the Security Policy

Certificate

Certificate number2989
StandardFIPS 140-2
Statushistorical
Overall level2
Module typeHardware
EmbodimentMulti-Chip Stand Alone
VendorAruba, a Hewlett Packard Enterprise company · website
Hardware versions[AP-324-F1 (HPE SKU JW185A) and AP-325-F1 (HPE SKU JW187A)] with FIPS Kit 4011570-01 (HPE SKU JY894A)
Firmware versionsArubaOS 6.5.1-FIPS

Module description

Quoted from the NIST CMVP entry for this certificate.

Aruba's 802.11ac Wi-Fi access points operate at gigabit speeds, offering extreme performance for mobile devices. In FIPS 140-2 mode, Aruba APs in conjunction with a Mobility Controller support the IEEE 802.11i/WPA2 client standard along with optional Suite B cryptography. Aruba APs also support wireless intrusion detection/prevention services and wireless mesh topologies.

Security level exceptions

  • Mitigation of Other Attacks: N/A

Approved algorithms (9)

AlgorithmCAVP certificates
AES1648, 3998, 4138
CVL825, 944, 945
DRBG1188
ECDSA891, 950
HMAC538, 2610, 2711
KBKDF92
RSA2054, 2254, 2395
SHS934, 3300, 3408, 3633
Triple-DES758, 2196, 2262

Allowed algorithms

Diffie-Hellman (key agreement; key establishment methodology provides 112 bits of encryption strength); EC Diffie-Hellman (key agreement; key establishment methodology provides 128 or 192 bits of encryption strength); NDRNG

Validation history

DateTypeLab
2017-08-10InitialLeidos Accredited Testing & Evaluation (AT&E) Lab

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2017-08-10

Source documents