Arista WiFi Access Points
Arista WiFi Access Points, from Arista Networks, Inc., holds FIPS 140-3 certificate #5515 at overall level 2. The validation is active, with a sunset date of 2031-09-07. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.
Caveat: When installed, initialized and configured as specified in Section 11.1 of the Security Policy. The tamper evident seals and security devices installed as indicated in the security policy. Installation of the referenced components required for the module to operate in an approved mode of operation. No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs.
Certificate
| Certificate number | 5515 |
|---|---|
| Standard | FIPS 140-3 |
| Status | active |
| Sunset date | 2031-09-07 |
| Overall level | 2 |
| Module type | Hardware |
| Embodiment | MultiChipStand |
| Vendor | Arista Networks, Inc. · website |
Module description
Quoted from the NIST CMVP entry for this certificate.
This crypto module provides network connectivity to Wireless clients. It transmits and receives wireless signals from wireless clients. It acts as a bridge between wireless clients and the wired network, extending network connectivity to wireless clients. It controls access to the network by enforcing security policies to regulate which devices can connect to it. The modules accepts commands and sends status information to an authenticated management server allowing itself to be managed by that wireless management server.
Security level exceptions
- Operational environment: N/A
- Non-invasive security: N/A
- Mitigation of other attacks: N/A
Approved algorithms (36)
| Algorithm | CAVP certificates |
|---|---|
| AES-CBC | A5259, A7103, A7104 |
| AES-CCM | A3239, A5259 |
| AES-CMAC | A5259 |
| AES-GCM | A3239, A5259, A7103, A7104 |
| AES-GMAC | A3239 |
| AES-KW | A5259 |
| Counter DRBG | A5259 |
| ECDSA KeyGen (FIPS186-5) | A5259 |
| ECDSA SigGen (FIPS186-5) | A5259 |
| ECDSA SigVer (FIPS186-4) | A5259 |
| ECDSA SigVer (FIPS186-5) | A5259 |
| HMAC-SHA-1 | A5259 |
| HMAC-SHA2-224 | A5259 |
| HMAC-SHA2-256 | A5259, A7103, A7104 |
| HMAC-SHA2-384 | A5259, A7103, A7104 |
| HMAC-SHA2-512 | A5259, A7103, A7104 |
| KAS-ECC-SSC Sp800-56Ar3 | A5259 |
| KAS-FFC-SSC Sp800-56Ar3 | A5259 |
| KDF IKEv1 | A5259 |
| KDF IKEv2 | A5259 |
| KDF SP800-108 | A5259 |
| KDF SSH | A5259 |
| PBKDF | A5259 |
| RSA KeyGen (FIPS186-5) | A5259 |
| RSA SigGen (FIPS186-5) | A5259 |
| RSA SigVer (FIPS186-4) | A5259 |
| RSA SigVer (FIPS186-5) | A5259 |
| Safe Primes Key Generation | A5259 |
| SHA-1 | A5259 |
| SHA2-224 | A5259 |
| SHA2-256 | A5259, A7103, A7104 |
| SHA2-384 | A5259, A7103, A7104 |
| SHA2-512 | A5259, A7103, A7104 |
| SHA3-256 | A6926 |
| TLS v1.2 KDF RFC7627 | A5259 |
| TLS v1.3 KDF | A5259 |
Validation history
| Date | Type | Lab |
|---|---|---|
| 2026-09-08 | Initial | Lightship Security, Inc. |
Status timeline
As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.
- 2026-09-10: first observed by this tracker, status active
- Validation dates on record: 2026-09-08