Previous Topic: Install CA DirectoryNext Topic: Create an Encryption Parameters File


Create a FIPS 140-2 Encryption Key

When you run the CA IdentityMinder installer, you are given the option of enabling FIPS 140-2 compliance mode. For CA IdentityMinder to support FIPS 140-2, all components in a CA IdentityMinder environment must be FIPS 140-2 enabled. You need a FIPS encryption key to enable FIPS 140-2 during installation. A Password Tool for creating a FIPS key is located in the installation media at PasswordTool\bin.

Important! Use the same FIPS 140-2 encryption key in all installations. Verify that you safeguard the Password Tool generated key file immediately.

If you are using SiteMinder, be sure to set the ra.xml file correctly after CA IdentityMinder installation. See the procedure Adding SiteMinder to an Existing CA IdentityMinder Deployment in the Configuration Guide.