808bits

Ciena Waveserver Ai WCS-2 Module

FIPS 140-2 certificate #3526 · Ciena® Corporation · data as of 2026-08-28
Historical. SP 800-56Arev3 transition. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When installed, initialized and configured as specified in Section 12 of the Security Policy

Certificate

Certificate number3526
StandardFIPS 140-2
Statushistorical
Overall level2
Module typeHardware
EmbodimentMulti-Chip Embedded
VendorCiena® Corporation · website
Hardware versions186-1034-411-EB, Revision 002 with PCB P/N: 186-1034-210 Revision 001 [1], [2], [3], [4], 186-1034-411-EB, Revision 003 with PCB P/N: 186-1034-210 Revision 001 [2], [3], [4], 186-1034-411-EB, Revision 004 with PCB P/N: 186-1034-210 Revision 001 [2], [3], [4], 186-1034-411-EB, Revision 005 with PCB P/N: 186-1034-210 Revision 001 [2], [3], [4], 186-1034-411-EB, Revision 006 with PCB P/N: 186-1034-210 Revision 001 [2], [3], [4] or 186-1034-411-EB, Revision 007 with PCB P/N: 186-1034-210 Revision 001 [2], [3], [4]
Firmware versions1.3.5 [1], 1.3.6 [2], 1.3.61 [3] or 1.3.62 [4]

Module description

The Ciena Waveserver Ai, with WCS2 and Encryption cards, offers a Layer 1 AES-256-GCM encryption solution for 100GE clients supporting 100Gbs to 400Gb/s wirespeed encryption per line port for enterprises, datacenters and government deployments.

Security level exceptions

  • Roles, Services, and Authentication: Level 3
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES4438, C125, C193
CKGvendor affirmed
CVLC193
DRBGC125, C193
ECDSAC193
HMACC125, C193
KASC193
KTS
KTS
RSAC193
SHSC125, C193

Allowed algorithms

Diffie-Hellman (CVL Cert. #C193, key agreement; key establishment methodology provides 112 bits of encryption strength); EC Diffie-Hellman (CVL Cert. #C193, key agreement; key establishment methodology provides between 128 and 256 bits of encryption strength); NDRNG; RSA (key wrapping; key establishment methodology provides 112 bits or 128 bits of encryption strength);

Tested configurations

  • N/A

Validation history

DateTypeLab
2019-09-16InitialAcumen Security
2020-02-21UpdateAcumen Security
2020-05-22UpdateAcumen Security
2020-08-28UpdateAcumen Security
2021-10-01UpdateAcumen Security
2021-12-14UpdateAcumen Security
2022-05-10UpdateAcumen Security

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2019-09-16, 2020-02-21, 2020-05-22, 2020-08-28, 2021-10-01, 2021-12-14, 2022-05-10

Source documents