808bits

Arista WiFi Access Points

FIPS 140-3 certificate #5515 · Arista Networks, Inc. · data as of 2026-09-10

Arista WiFi Access Points, from Arista Networks, Inc., holds FIPS 140-3 certificate #5515 at overall level 2. The validation is active, with a sunset date of 2031-09-07. Below are its validation history, algorithm certificates and security policy, drawn from the NIST CMVP entry.

Active. Sunset date 2031-09-07, 1822 days away.
Caveat: When installed, initialized and configured as specified in Section 11.1 of the Security Policy. The tamper evident seals and security devices installed as indicated in the security policy. Installation of the referenced components required for the module to operate in an approved mode of operation. No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs.

Certificate

Certificate number5515
StandardFIPS 140-3
Statusactive
Sunset date2031-09-07
Overall level2
Module typeHardware
EmbodimentMultiChipStand
VendorArista Networks, Inc. · website

Module description

Quoted from the NIST CMVP entry for this certificate.

This crypto module provides network connectivity to Wireless clients. It transmits and receives wireless signals from wireless clients. It acts as a bridge between wireless clients and the wired network, extending network connectivity to wireless clients. It controls access to the network by enforcing security policies to regulate which devices can connect to it. The modules accepts commands and sends status information to an authenticated management server allowing itself to be managed by that wireless management server.

Security level exceptions

  • Operational environment: N/A
  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A

Approved algorithms (36)

AlgorithmCAVP certificates
AES-CBCA5259, A7103, A7104
AES-CCMA3239, A5259
AES-CMACA5259
AES-GCMA3239, A5259, A7103, A7104
AES-GMACA3239
AES-KWA5259
Counter DRBGA5259
ECDSA KeyGen (FIPS186-5)A5259
ECDSA SigGen (FIPS186-5)A5259
ECDSA SigVer (FIPS186-4)A5259
ECDSA SigVer (FIPS186-5)A5259
HMAC-SHA-1A5259
HMAC-SHA2-224A5259
HMAC-SHA2-256A5259, A7103, A7104
HMAC-SHA2-384A5259, A7103, A7104
HMAC-SHA2-512A5259, A7103, A7104
KAS-ECC-SSC Sp800-56Ar3A5259
KAS-FFC-SSC Sp800-56Ar3A5259
KDF IKEv1A5259
KDF IKEv2A5259
KDF SP800-108A5259
KDF SSHA5259
PBKDFA5259
RSA KeyGen (FIPS186-5)A5259
RSA SigGen (FIPS186-5)A5259
RSA SigVer (FIPS186-4)A5259
RSA SigVer (FIPS186-5)A5259
Safe Primes Key GenerationA5259
SHA-1A5259
SHA2-224A5259
SHA2-256A5259, A7103, A7104
SHA2-384A5259, A7103, A7104
SHA2-512A5259, A7103, A7104
SHA3-256A6926
TLS v1.2 KDF RFC7627A5259
TLS v1.3 KDFA5259

Validation history

DateTypeLab
2026-09-08InitialLightship Security, Inc.

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-09-10: first observed by this tracker, status active
  • Validation dates on record: 2026-09-08

Source documents