Previous Topic: Cryptographic Module Validated to FIPS 140-2Next Topic: Maintaining the Domain


User Authentication and Authorization in FIPS Mode

CA EEM can be configured to use FIPS mode. This is an option. When CA EEM is configured to use FIPS, CA Process Automation must be configured to use FIPS. This is achieved by selecting the Use FIPS-Compliant Certificate check box during installation of the Domain Orchestrator.

Whether FIPS mode is set to on or off, the data transferred between CA EEM and CA Process Automation is encrypted. The difference is in the algorithms used for encryption.

When users log in, CA Process Automation transfers the user name and password to CA EEM. CA EEM returns authentication data and authorization data to CA Process Automation.