WPA3 Features Validated on Cisco

WPA3 Features Validated on Cisco

The following features are validated on a Cisco infrastructure using a supported Zebra device.
  • Enhanced open
  • Enhanced open transition
  • SAE-personal
  • SAE-personal-transition
  • Enterprise-128 ccm SHA-1
  • Enterprise-256 gcm
Validation was performed using the following Cisco infrastructure:
35xx and 55xx interoperability validation;
  • AP Model – 4800 / 3800 / 2800 / 1560 / 1540 / 18XX
  • Recommended Minimum Software Version - 8.10.105.0
    The following WPA3 sub features are supported in AireOS Controllers: AES CCMP128, WPA3 SAE.
98xx interoperability validation;
  • Controller Model - C9800-L-C-K9
  • AP Model – Catalyst 9120 series, 9130 series
    The following WPA3 sub features are supported in 9120: WPA3 SAE, FT-SAE and OWE.
    The following WPA3 sub features are supported in 9130: WPA3 SAE, WPA3 GCMP128 SuiteB 1x, GCMP256 SuiteB 192 bit, AES-CCMP128 (802.1x & 802.1x-SHA256), and OWE.
  • Recommended Minimum Software Version - 16.12.1 for features WPA3 SAE, SAE-FT, OWE, GCMP128 SuiteB 1x, GCMP256 SuiteB 192 bit, AES CCMP128;
    • WPA3 CCMP256 is not supported
    • WPA 802.1x-SHA256 AES CCMP 128, GCMP128 SuiteB 1x, GCMP256 SuiteB 192 bit are not supported in FlexConnect Mode.
See WPA3 Deployment Guide for all supported WPA3 Cisco Products and clients supported below: