Reference Guide

25
7 Self Tests
The module performs the following Self Tests after being configured into either Remote AP mode or
Remote Mesh Portal mode. The module performs both power-up and conditional self-tests. In the event any
self-test fails, the module enters an error state, logs the error, and reboots automatically.
The module performs the following power-up self-tests:
o ArubaOS OpenSSL Module Known Answer Tests:
o AES (encrypt/decrypt) KATs
o Triple-DES (encrypt/decrypt) KATs
o DRBG KAT
o RSA (sign/verify) KAT
o ECDSA Sign/Verify
o SHS (SHA-1, SHA-256, SHA-384 and SHA-512) KATs
o HMAC (HMAC-SHA-1, HMAC-SHA-256, HMAC-SHA-384 and HMAC-SHA-512)
KATs
o ArubaOS Crypto Module Known Answer Tests:
o AES (encrypt/decrypt) KATs
o Triple-DES (encrypt/decrypt) KATs
o SHS (SHA-1, SHA-256, SHA-384 and SHA-512) KATs
o HMAC (HMAC-SHA-1, HMAC-SHA-256, HMAC-SHA-384 and HMAC-SHA-512)
KATs
o RSA (sign/verify) KAT
o ECDSA Sign/Verify
o FIPS 186-2 RNG KAT
o ArubaOS Uboot Bootloader Module Known Answer Test
o Firmware Integrity Test: RSA PKCS#1 v1.5 (2048 bits) signature verification with SHA-
1
o ArubaOS AP Hardware (Freescale P1020) Known Answer Tests:
o AES (encrypt/decrypt) KATs
o AES-CCM KAT
o Triple-DES (encrypt/decrypt) KATs
o HMAC-SHA-1KAT
The following Conditional Self-tests are performed in the module:
o ArubaOS OpenSSL Module
o CRNG Test to Approved RNG (DRBG)
o ECDSA Pairwise Consistency Test
o RSA Pairwise Consistency Test