Reference Guide
Aruba 3000, 6000/M3 Mobility Controller FIPS 140-2 Level 2 Security Policy|33
When installing expansion modules for the Aruba 6000, use only FIPS-approved modules, replace TELs affected by
the change, and record the reason for the change, along with the new TEL locations and serial numbers, in the
security log.
The Crypto Officer shall not configure the Diffie-Hellman algorithm with 768-bits (Group 1) or 1024-bits (Group 2) in
FIPS mode for IKEv1/IKEv2-IPSec and SSHv2.
User Guidance
The User accesses the controller VPN functionality as an IPsec client. The user can also access the controller 802.11i
functionality as an 802.11 client. Although outside the boundary of the controller, the User should be directed to be careful
not to provide authentication information and session keys to others parties.