808bits

Aruba AP-214, AP-215, AP-224, AP-225, AP-228, AP-274, AP-275, AP-277, AP-324, and AP-325 Wireless Access Points

FIPS 140-2 certificate #3485 · Aruba, a Hewlett Packard Enterprise company · data as of 2026-08-28
Historical. SP 800-56Arev3 transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode. When installed, initialized and configured as specified in Section 13 of the Security Policy. The tamper evident labels installed as indicated in the security policy

Certificate

Certificate number3485
StandardFIPS 140-2
Statushistorical
Overall level2
Module typeHardware
EmbodimentMulti-Chip Stand Alone
VendorAruba, a Hewlett Packard Enterprise company · website
Hardware versions[AP-214-USF1 (HPE SKU JW169A), AP-215-USF1 (HPE SKU JW171A), AP-224-USF1 (HPE SKU JW173A), AP-225-USF1 (HPE SKU JW175A), AP-228-USF1 (HPE SKU JW183A), AP-274-USF1 (HPE SKU JW177A), AP-275-USF1 (HPE SKU JW179A), AP-277-USF1 (HPE SKU JW181A), AP-324-USF1 (HPE SKU JW185A) and AP-325-USF1 (HPE SKU JW187A)] with FIPS Kit 4011570-01 (HPE SKU JY894A)
Firmware versionsArubaOS 8.2.2.5-FIPS; ArubaOS 8.5.0.3-FIPS and ArubaOS 8.6.0.7-FIPS

Module description

Aruba's 802.11ac Wi-Fi access points operate at gigabit speeds, offering extreme performance for mobile devices. In FIPS 140-2 mode, Aruba APs in conjunction with a Mobility Controller support the IEEE 802.11i/WPA2 client standard along with optional Suite B cryptography. Aruba APs also support wireless intrusion detection/prevention services and wireless mesh topologies.

Security level exceptions

  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES1648, 1649, 2884, 2900, 3998, 4138, 5412
CVL326, 826, 944, 2154, C2090, C2091
DRBG528, 1188
ECDSA519, 950, 1210, 1211, 1578, 1580
HMAC538, 967, 1818, 1835, 2610, 2711, C2090, C2091
KBKDF32, 92
KTS
KTS
KTS
KTS
KTS
KTS
RSA1518, 1528, 2054, 2254, 2395, 2419
SHS934, 1446, 2425, 2440, 3300, 3408, 3633, 3657, C2090, C2091

Allowed algorithms

Diffie-Hellman (CVL Certs. #326, #826, #944, #2154, #C2090 and #C2091, key agreement; key establishment methodology provides 112 bits of encryption strength); EC Diffie-Hellman (key agreement; key establishment methodology provides 128 or 192 bits of encryption strength); NDRNG

Tested configurations

  • N/A

Validation history

DateTypeLab
2019-07-09InitialLeidos Accredited Testing & Evaluation (AT&E) Lab
2020-03-11UpdateLeidos Accredited Testing & Evaluation (AT&E) Lab
2021-04-09UpdateLeidos Accredited Testing & Evaluation (AT&E) Lab

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2019-07-09, 2020-03-11, 2021-04-09

Source documents