808bits

Cisco Catalyst 9800 (40/80/L) Wireless Controllers running IOS-XE 16.12

FIPS 140-2 certificate #3883 · Cisco Systems, Inc. · data as of 2026-08-28
Historical. SP 800-56Arev3 transition - replaced by certificate #4606. Federal agencies may reference historical validations for existing systems only, not for new procurement.
Caveat: When installed, initialized and configured as specified in Section 11 of the Security Policy and operated in FIPS mode. This module contains the embedded module ACT2Lite validated to FIPS 140-2 under Cert. #3637 operating in FIPS mode.

Certificate

Certificate number3883
StandardFIPS 140-2
Statushistorical
Overall level1
Module typeHardware
EmbodimentMulti-Chip Stand Alone
VendorCisco Systems, Inc. · website
Hardware versions9800-40, 9800-80 and 9800-L
Firmware versionsIOS-XE 16.12

Module description

The Cisco Series Wireless Controllers, are a highly scalable and flexible platform that enables system-wide services for mission-critical wireless networking in medium-sized to large enterprises and campus environments.

Security level exceptions

  • Roles, Services, and Authentication: Level 3
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AES2346, C972, C1279
CKGvendor affirmed
CVLC972, C1279
DRBGC972, C1279
ECDSAC972, C1279
HMACC972, C1279
KTS
KTS
KTS
KTS
RSAC972, C1279
SHS2023, C972, C1279
Triple-DESC972, C1279

Allowed algorithms

Diffie-Hellman (CVL Cert. #C972, key agreement; key establishment methodology provides 112 bits of encryption strength); Diffie-Hellman (CVL Cert, #C1279, key agreement; key establishment methodology provides 112 bits of encryption strength); EC Diffie-Hellman (CVL Cert. #C972 with CVL Cert. #C972, key agreement; key establishment methodology provides 128 or 192 bits of encryption strength); EC Diffie-Hellman (CVL Cert. #C1279 with CVL Cert. #C1279, key agreement; key establishment methodology provides128 or 192 bits of encryption strength); NDRNG; RSA (key wrapping; key establishment methodology provides 112 bits of encryption strength)

Tested configurations

  • N/A

Validation history

DateTypeLab
2021-04-06InitialAcumen Security

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status historical
  • Validation dates on record: 2021-04-06

Source documents