808bits

Aruba AP-203R, AP-203RP, and AP-303H Wireless Access Points

FIPS 140-2 certificate #3586 · Aruba, a Hewlett Packard Enterprise company · data as of 2026-08-28
Historical. SP 800-56Arev3 transition - replaced by certificate #4623. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When operated in FIPS mode. When installed, initialized and configured as specified in Section 13 of the Security Policy. The tamper evident labels installed as indicated in the security policy

Certificate

Certificate number3586
StandardFIPS 140-2
Statushistorical
Overall level2
Module typeHardware
EmbodimentMulti-Chip Stand Alone
VendorAruba, a Hewlett Packard Enterprise company · website
Hardware versions[AP-203R-USF1 (HPE SKU JY715A), AP-203R-RWF1 (HPE SKU JY713A), AP-203RP-USF1 (HPE SKU JY723A), AP-203RP-RWF1 (HPE SKU JY721A), AP-303H-USF1 (HPE SKU JY681A) and AP-303H-RWF1 (HPE SKU JY679A)] with FIPS Kit 4011570-01 (HPE SKU JY894A)
Firmware versionsArubaOS 8.2.2.5-FIPS; ArubaOS 8.5.0.3-FIPS and ArubaOS 8.6.0.7-FIPS

Module description

Aruba's 802.11ac Wi-Fi access points operate at gigabit speeds, offering extreme performance for mobile devices. In FIPS 140-2 mode, Aruba APs in conjunction with a Mobility Controller support the IEEE 802.11i/WPA2 client standard along with optional Suite B cryptography. Aruba APs also support wireless intrusion detection/prevention services and wireless mesh topologies.

Security level exceptions

  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES5265, 5266, 5412, 5928, 5945, C1295
CVL1736, 1738, 2149, 2174, C2090, C2091
DRBG2017, 2481
ECDSA1374, 1375, 1579, 1591
HMAC3484, 3485, 3906, 3918, C2090, C2091
KBKDF181, 246
KTS
KTS
KTS
KTS
KTS
KTS
RSA2395, 2815, 2816, 3107, 3111, 3121
SHS3633, 4235, 4236, 4682, 4685, 4697, C2090, C2091

Allowed algorithms

Diffie-Hellman (key agreement; key establishment methodology provides 112 bits of encryption strength); EC Diffie-Hellman (key agreement; key establishment methodology provides 128 or 192 bits of encryption strength); NDRNG

Tested configurations

  • N/A

Validation history

DateTypeLab
2019-12-20InitialLeidos Accredited Testing & Evaluation (AT&E) Lab
2020-03-11UpdateLeidos Accredited Testing & Evaluation (AT&E) Lab
2021-04-09UpdateLeidos Accredited Testing & Evaluation (AT&E) Lab

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2019-12-20, 2020-03-11, 2021-04-09

Source documents