Previous Topic: Advanced Encryption ModeNext Topic: What Is FIPS 140-2?


Overview

You can deploy CA Data Protection in Advanced Encryption mode. When deployed in this mode, CA Data Protection uses Transport Layer Security (TLS) and certificates to enable FIPS 140-2 compliant data transfers between CA Data Protection machines.

CA Data Protection machines use a single enterprise certificate across the CA Data Protection enterprise. There is no authentication of individual machines. Any machine possessing the enterprise certificate and its associated private key can communicate with any CA Data Protection machine that uses the same certificate.

More information:

What Is FIPS 140-2?

Which FIPS Certified Cryptographic Modules Are Used?

Which Encryption Algorithms Are Used?

What Data Is Encrypted?

Can I Convert My Existing CA Data Protection Deployment To Be FIPS Compatible?

Key Points