Previous Topic: New and Changed Features in r12.1 SP1

Next Topic: Operating Modes

FIPS 140-2 Compliance Overview

The Federal Information Processing Standards (FIPS) 140-2 publication is a security standard for the cryptographic libraries and algorithms a product should use for encryption. FIPS 140-2 encryption affects the communication of all sensitive data between components of CA products and between CA products and third-party products. FIPS 140-2 specifies the requirements for using cryptographic algorithms within a security system protecting sensitive, unclassified data.

CA Enterprise Log Manager offers FIPS compatibility with event traffic secured using FIPS-compliant algorithms when operating in FIPS mode. CA Enterprise Log Manager also offers a default, non-FIPS mode in which event traffic is not secured with FIPS-compliant algorithms. CA Enterprise Log Manager servers in a federated network cannot mix the two operating modes. This means that a server running in non-FIPS mode cannot share query and report data with a server that is running in FIPS mode.

Information about enabling and disabling FIPS mode is available in the Implementation Guide section on installing CA Enterprise Log Manager, and in the online help for the System Status service.

More information:

Operating Modes

Encryption Libraries

Algorithms Used

About Certificates and Key Files

FIPS Support Limitations

Configure Mozilla Firefox to Access CA Enterprise Log Manager in FIPS Mode

Adding New CA Enterprise Log Manager Servers to an Existing FIPS Mode Federation