Reference Guide

36
7 Self-Tests
The module performs the following Power-Up Self-Tests (regardless the mode of operation) and
Conditional Tests (in each FIPS approved mode of operation). In the event of a test fails, the module enters
an error state, logs the error, and reboots automatically.
The module performs the following power-up self-tests:
Aruba AP Hardware (Atheros WLAN) Known Answer Test:
o AES-CCM KAT
ArubaOS OpenSSL Module Known Answer Tests:
o AES (encrypt/decrypt) KATs
o Triple-DES (encrypt/decrypt) KATs
o DRBG KAT
o RSA (sign/verify) KAT
o ECDSA Sign/Verify
o SHS (SHA-1, SHA-256, SHA-384 and SHA-512) KATs
o HMAC (HMAC-SHA-1, HMAC-SHA-256, HMAC-SHA-384 and HMAC-SHA-512)
KATs
ArubaOS Crypto Module Known Answer Tests:
o AES (encrypt/decrypt) KATs
o Triple-DES (encrypt/decrypt) KATs
o SHS (SHA-1, SHA-256, SHA-384 and SHA-512) KATs
o HMAC (HMAC-SHA-1, HMAC-SHA-256, HMAC-SHA-384 and HMAC-SHA-512)
KATs
o RSA (sign/verify) KAT
o ECDSA Sign/Verify
o FIPS 186-2 RNG KAT
ArubaOS Uboot Bootloader Module Known Answer Tests:
o Firmware Integrity Test: RSA PKCS#1 v1.5 (2048 bits) signature verification with SHA-
1
ArubaOS AP Kernel Crypto Known Answer Tests:
o AES (encrypt/decrypt) KATs
o AES-GCM KAT
The following Conditional Tests are performed in the module:
ArubaOS OpenSSL Module
o CRNG Test to Approved RNG (DRBG)
o ECDSA Pairwise Consistency Test