Previous Topic: FIPS 140-2 Compliance Overview

Next Topic: Encryption Libraries

Operating Modes

CA Enterprise Log Manager can operate in two modes, FIPS mode or non-FIPS mode. The cryptographic boundaries are the same in both modes, but the algorithms are different. By default, CA Enterprise Log Manager servers operate in non-FIPS mode. Users with the Administrator role can enable FIPS mode operation.

non-FIPS mode

This mode uses a mix of encryption algorithms for event transport and other communications between the CA Enterprise Log Manager and CA EEM server that do not necessarily meet FIPS 140-2 standards.

FIPS mode

This mode uses FIPS-certified encryption algorithms for event transport and other communications between the CA Enterprise Log Manager and CA EEM server.

Administrator-level users can review agent operating modes from the Agent Explorer node on the Administration tab, Log Collection subtab.

For more information about switching between FIPS and non-FIPS modes, refer to the online help for System Status Tasks, or the Implementation Guide section on configuring services.

More information:

Enable FIPS Mode Operation

Algorithms Used

FIPS Support Limitations