Reference Guide

40
7 Self-Tests
The module performs the following Self Tests after being configured into either Remote AP mode or
Remote Mesh Portal mode. The module performs both power-up and conditional self-tests. In the event any
self-test fails, the module enters an error state, logs the error, and reboots automatically.
The module performs the following power-up self-tests:
o Aruba AP Hardware (Atheros WLAN) Known Answer Test:
o AES-CCM KAT
o ArubaOS OpenSSL Module Known Answer Tests:
o AES (encrypt/decrypt) KATs
o Triple-DES (encrypt/decrypt) KATs
o DRBG KAT
o RSA KAT
o ECDSA Sign/Verify
o SHS (SHA1, SHA256, SHA384 and SHA512) KATs
o HMAC (HMAC-SHA1, HMAC-SHA256, HMAC-SHA384 and HMAC-SHA512) KATs
o ArubaOS Crypto Module Known Answer Tests:
o AES (encrypt/decrypt) KATs
o Triple-DES (encrypt/decrypt) KATs
o SHS (SHA1, SHA256, SHA384 and SHA512) KATs
o HMAC (HMAC-SHA1, HMAC-SHA256, HMAC-SHA384 and HMAC-SHA512) KATs
o RSA KAT
o ECDSA Sign/Verify
o FIPS 186-2 RNG KAT
o ArubaOS Uboot Bootloader Module Known Answer Test
o Firmware Integrity Test: RSA PKCS#1 v1.5 (2048 bits) signature verification with SHA-
1
o ArubaOS AP Kernel Crypto Known Answer Tests:
o AES (encrypt/decrypt) KATs
o AES-GCM KAT
The following Conditional Self-tests are performed in the module:
o ArubaOS OpenSSL Module
o CRNG Test to Approved RNG (DRBG)
o ECDSA Pairwise Consistency Test
o RSA Pairwise Consistency Test