Dell AP-93, W- AP92, W-AP105, AP-92, AP-175, W-AP93, W-AP175, AP-105 ROLES, Authentication and Services

Page 4

 

3.2.5

AP-175 TEL Placement

23

 

 

3.2.5.1 To detect access to restricted ports:

23

 

 

3.2.5.2 To detect opening of the chassis cover:

23

 

3.2.6 Inspection/Testing of Physical Security Mechanisms

25

 

3.3

MODES OF OPERATION

26

 

3.3.1 Configuring Remote AP FIPS Mode

26

 

3.3.2 Configuring Control Plane Security (CPSec) protected AP FIPS mode

27

 

3.3.3 Configuring Remote Mesh Portal FIPS Mode

28

 

3.3.4 Configuring Remote Mesh Point FIPS Mode

29

 

3.3.5 Verify that the module is in FIPS mode

30

 

3.4

OPERATIONAL ENVIRONMENT

30

 

3.5

LOGICAL INTERFACES

31

4 ROLES, AUTHENTICATION AND SERVICES

32

 

4.1

ROLES

32

 

4.1.1

Crypto Officer Authentication

32

 

4.1.2

User Authentication

33

 

4.1.3

Wireless Client Authentication

33

 

4.1.4 Strength of Authentication Mechanisms

33

 

4.2

SERVICES

35

 

4.2.1

Crypto Officer Services

35

 

4.2.2

User Services

36

 

4.2.3

Wireless Client Services

37

 

4.2.4

Unauthenticated Services

37

5

CRYPTOGRAPHIC ALGORITHMS

39

6

CRITICAL SECURITY PARAMETERS

40

7

SELF TESTS

44

4

Image 4
Contents Version Feb Aruba Networks Crossman Ave Sunnyvale, CA Page Aruba Dell Relationship Acronyms and Abbreviations AP-105 SeriesAP-175 Series Security Levels Physical SecurityROLES, Authentication and Services Aruba Dell Relationship IntroductionAcronyms and Abbreviations GHz IPSecProduct Overview AP-92Physical Description Aruba Part Number Dell Corresponding Part NumberPWR AP-92 Indicator LEDs Label Function Action StatusEnet AP-93 Label Function Action StatusAP-93 Indicator LEDs Label Function Action Status AP-105 Wireless Access Point AP-105 SeriesAP-105 Indicator LEDs Label Function Action Status AP-175 Wireless Access Point AP-175 SeriesPhysical Description AP-175 Indicator LEDs Label Function Action Status PositionModule Objectives Security LevelsPhysical Security Applying TELs2 AP-92 TEL Placement AP-92 Tel placement front viewAruba AP-92 Tel placement right view 3 AP-93 TEL Placement Aruba AP-92 Tel placement bottom viewAruba AP-93 Tel placement left view 4 AP-105 TEL Placement Aruba AP-93 Tel placement top viewAruba AP-105 Tel placement left view 5 AP-175 TEL Placement Aruba AP-105 Tel placement bottom viewAruba AP-175 Tel placement back view Inspection/Testing of Physical Security Mechanisms Aruba AP-175 Tel placement top viewConfiguring Remote AP Fips Mode Modes of OperationEnable Fips mode on the AP. This accomplished by going to Configuring Remote Mesh Portal Fips Mode Configuring Remote Mesh Point Fips Mode Verify that the module is in Fips mode Operational EnvironmentLogical Interfaces Fips 140-2 Logical Interfaces Module Physical InterfaceCrypto Officer Authentication Roles, Authentication and ServicesRoles User Authentication Wireless Client AuthenticationStrength of Authentication Mechanisms Authentication Mechanism StrengthWPA2-PSK Services Crypto Officer ServicesWPA2 PSK KEKUser Services PMKPTK Eapol MICWireless Client Services Unauthenticated Services∙ FTP ∙ Tftp ∙ NTP Cryptographic Algorithms Non-FIPS Approved AlgorithmsCritical Security Parameters HmacRNG PSK AES-CCMGMK GTKSelf Tests For an AES Atheros hardware Post failure