OmniSwitch AOS 8.3.1.R01
OmniSwitch AOS 8.3.1.R01, from Alcatel-Lucent Enterprise, holds FIPS 140-2 certificate #3428 at overall level 2. The validation is historical: agencies may keep the module in existing systems but not buy it new. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.
Certificate
| Certificate number | 3428 |
|---|---|
| Standard | FIPS 140-2 |
| Status | historical |
| Overall level | 2 |
| Module type | Hardware |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Alcatel-Lucent Enterprise · website |
| Hardware versions | OmniSwitch 6860-24, OmniSwitch 6860-P24, OmniSwitch 6860-48, OmniSwitch 6860-P48, OmniSwitch 6860E-24, OmniSwitch 6860E-P24, OmniSwitch 6860E-48, OmniSwitch 6860E-P48, OmniSwitch 6860E-U28, OmniSwitch 6865-P16X, OmniSwitch 6900-X20, OmniSwitch 6900-X40, OmniSwitch 6900-T20, OmniSwitch 6900-T40, OmniSwitch 6900-Q32, and OmniSwitch 6900-X72; FIPS Kit P/N: OS-FIPSKIT |
| Firmware versions | AOS 8.3.1.R01 |
Module description
Quoted from the NIST CMVP entry for this certificate.
The Alcatel-Lucent Enterprise OmniSwitch series of switches are rugged and high bandwidth switches running on the widely-deployed and field-proven Alcatel-Lucent Operating System (AOS). These switches are ideal for industrial and mission-critical applications that require wider operating temperature ranges, more stringent EMC/EMI requirements, and an optimized feature set for high security, reliability, performance, and easy management.
Security level exceptions
- Mitigation of Other Attacks: N/A
Approved algorithms (9)
| Algorithm | CAVP certificates |
|---|---|
| AES | 4285, 4286, 4287, 4440, 4441, 4443 |
| CKG | vendor affirmed |
| CVL | 1184, 1185, 1186 |
| DRBG | 1345, 1346, 1347 |
| ECDSA | 1078, 1079, 1081 |
| HMAC | 2821, 2822, 2823 |
| KTS | |
| RSA | 2306, 2307, 2308, 2421, 2425, 2427 |
| SHS | 3523, 3524, 3525 |
Allowed algorithms
Diffie-Hellman (key agreement; key establishment methodology provides 112 bits of encryption strength); EC Diffie-Hellman (key agreement; key establishment methodology provides between 128 and 256 bits of encryption strength); NDRNG; RSA (key wrapping; key establishment methodology provides 112 bits of encryption strength)
Tested configurations
- N/A
Validation history
| Date | Type | Lab |
|---|---|---|
| 2019-04-03 | Initial | EWA - Canada |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status historical
- Validation dates on record: 2019-04-03