Reference Guide

24
7 Self-Tests
The module performs the following Self Tests after being configured into either Remote AP mode or
Remote Mesh Portal mode. The module performs both power-up and conditional self-tests. In the event any
self-test fails, the module enters an error state, logs the error, and reboots automatically.
The module performs the following power-up self-tests:
Aruba AP Hardware (Atheros WLAN) Known Answer Test:
o AES-CCM KAT
ArubaOS OpenSSL Module Known Answer Tests:
o AES (encrypt/decrypt) KATs
o Triple-DES (encrypt/decrypt) KATs
o DRBG KAT
o RSA KAT
o ECDSA Sign/Verify
o SHS (SHA-1, SHA-256, SHA-384 and SHA-512) KATs
o HMAC (HMAC-SHA-1, HMAC-SHA-256, HMAC-SHA-384 and HMAC-SHA-512)
KATs
ArubaOS Crypto Module Known Answer Tests:
o AES (encrypt/decrypt) KATs
o Triple-DES (encrypt/decrypt) KATs
o SHS (SHA-1, SHA-256, SHA-384 and SHA-512) KATs
o HMAC (HMAC-SHA-1, HMAC-SHA-256, HMAC-SHA-384 and HMAC-SHA-512)
KATs
o RSA (sign/verify) KAT
o ECDSA Sign/Verify
o FIPS 186-2 RNG KAT
ArubaOS Uboot Bootloader Module Known Answer Tests:
o Firmware Integrity Test: RSA PKCS#1 v1.5 (2048 bits) signature verification with SHA-
1
ArubaOS AP Kernel Crypto Module Known Answer Tests:
o AES (encrypt/decrypt) KATs
o AES-GCM KAT
The following Conditional Self-tests are performed in the module:
ArubaOS OpenSSL Module
o CRNG Test on Approved RNG (DRBG)