Aruba IAP-315, IAP-345, IAP-377, IAP-503H, IAP-505H, IAP-504, IAP-505, IAP-514, IAP-515, IAP-534, IAP-535, IAP-555, IAP-635, and IAP-655 Wireless Access Points
Caveat: When operated in FIPS mode. When installed, initialized and configured as specified in Section 13 of the Security Policy. The tamper evident labels installed as indicated in the security policy. The module generates cryptographic keys whose strengths are modified by available entropy
Certificate
| Certificate number | 4543 |
|---|---|
| Standard | FIPS 140-2 |
| Status | active |
| Sunset date | 2026-09-21 |
| Overall level | 2 |
| Module type | Hardware |
| Embodiment | Multi-Chip Stand Alone |
| Vendor | Aruba, a Hewlett Packard Enterprise company · website |
| Hardware versions | IAP-315-US TAA (HPE SKU JW814A), IAP-345-USF1 (HPE SKU JZ034A), IAP-345-RWF1 (HPE SKU JZ032A), IAP-377-USF1 (HPE SKU JZ188A), IAP-377-RWF1 (HPE SKU JZ187A), IAP-503H-US TAA (HPE SKU R3V39A), IAP-505H-US TAA (HPE SKU R3V49A), IAP-504-US TAA (HPE SKU R2H34A), IAP-505-US TAA (HPE SKU R2H39A), IAP-514-US TAA (HPE SKU Q9H68A), IAP-515-US TAA (HPE SKU Q9H73A), IAP-534-US TAA (HPE SKU JZ342A), IAP-535-US TAA (HPE SKU JZ347A), IAP-555-US TAA (HPE SKU JZ367A), IAP-635-US TAA (HPE SKU R7J33A), IAP-635-RW TAA (HPE SKU R7J32A), IAP-655-US TAA (HPE SKU R7J44A), IAP-655-RW TAA (HPE SKU R7J43A) |
| Firmware versions | Aruba Instant version 8.8 and version 8.10 |
Module description
Aruba's Wi-Fi Instant Access Points operate at gigabit speeds, offering extreme performance for mobile devices. In FIPS 140-2 mode, Aruba IAPs support the IEEE 802.11i/WPA2 client standard. Aruba APs also support wireless intrusion detection/prevention services and wireless mesh topologies. The built-in GUI provides access to live monitoring and traffic visibility, while network configuration provides full customization of SSIDs, roles, guest access, and more.
Approved algorithms
| Algorithm | CAVP certificate |
|---|---|
| AES | 4748, 5412, 5664, C1275, C1276, A2490, A2491 |
| CVL | A2490, A2491 |
| DRBG | A2491 |
| DSA | A2490, A2491 |
| ECDSA | A2490, A2491 |
| ENT | |
| HMAC | A2490, A2491 |
| KAS | |
| KAS | |
| KAS | |
| KAS-SSC | A2490, A2491 |
| KBKDF | A2491 |
| KDA | A2491 |
| RSA | A2489, A2490, A2491 |
| SHS | A2489, A2490, A2491 |
Allowed algorithms
RSA (key wrapping; key establishment methodology provides 112 bits of encryption strength)
Tested configurations
- N/A
Validation history
| Date | Type | Lab |
|---|---|---|
| 2023-06-29 | Initial | Leidos Accredited Testing & Evaluation (AT&E) Lab |
| 2023-09-14 | Update | Leidos Accredited Testing & Evaluation (AT&E) Lab |
| 2024-06-07 | Update | Leidos Accredited Testing & Evaluation (AT&E) Lab |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-08-21: first observed by this tracker, status active
- Validation dates on record: 2023-06-29, 2023-09-14, 2024-06-07