808bits

Aruba AP-224 and AP-225 Wireless Access Points

FIPS 140-2 certificate #3024 · Aruba, a Hewlett Packard Enterprise company · data as of 2026-09-12

Aruba AP-224 and AP-225 Wireless Access Points, from Aruba, a Hewlett Packard Enterprise company, holds FIPS 140-2 certificate #3024 at overall level 2. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.

Historical. SP 800-56Arev3 transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode with tamper evident labels installed as indicated in the Security Policy

Certificate

Certificate number3024
StandardFIPS 140-2
Statushistorical
Overall level2
Module typeHardware
EmbodimentMulti-Chip Stand Alone
VendorAruba, a Hewlett Packard Enterprise company · website
Hardware versions[AP-224-F1 (HPE SKU JW173A) and AP-225-F1 (HPE SKU JW175A)] with FIPS Kit 4011570-01 (HPE SKU JY894A)
Firmware versionsArubaOS 6.5.1-FIPS

Module description

Quoted from the NIST CMVP entry for this certificate.

Aruba's 802.11ac Wi-Fi access points operate at gigabit speeds, offering extreme performance for mobile devices. In FIPS 140-2 mode, Aruba APs in conjunction with a Mobility Controller support the IEEE 802.11i/WPA2 client standard along with optional Suite B cryptography. Aruba APs also support wireless intrusion detection/prevention services and wireless mesh topologies.

Security level exceptions

  • Mitigation of Other Attacks: N/A

Approved algorithms (10)

AlgorithmCAVP certificates
AES1648, 2677, 2680
CVL150, 232, 251
DRBG433
ECDSA466, 469
HMAC538, 1663, 1666
KBKDF16
KTS
RSA1376, 1379, 2419
SHS934, 2246, 2249, 3657
Triple-DES758, 1605, 1607

Allowed algorithms

Diffie-Hellman (key agreement; key establishment methodology provides 112 bits of encryption strength); EC Diffie-Hellman (key agreement; key establishment methodology provides 128 or 192 bits of encryption strength); NDRNG

Tested configurations

  • N/A

Validation history

DateTypeLab
2017-09-22InitialLeidos Accredited Testing & Evaluation (AT&E) Lab

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2017-09-22

Source documents