[Freeipa-users] IPA and FIPS 140-2

Michael Sean Conley Michael.Sean.Conley at raytheon.com
Thu Aug 4 16:40:10 UTC 2016


Is there any indication of a timeframe for it to become FIPS compliant?  If
we are talking weeks, rather than years...

Michael Sean Conley




From:	Rob Crittenden <rcritten at redhat.com>
To:	Michael Sean Conley <Michael.Sean.Conley at raytheon.com>,
            freeipa-users at redhat.com
Date:	08/04/2016 11:37 AM
Subject:	Re: [Freeipa-users] IPA and FIPS 140-2



Michael Sean Conley wrote:
> Does ANYONE have any experience getting IPA to work with FIPS?
>
> We're trying desperately to get this going, as we have some requirements
> that the Identity Management Tool we choose must be FIPS 140-2 compliant.

No, it doesn't work in FIPS mode yet. If you open a support case with
Red Hat your case can be added to
https://bugzilla.redhat.com/show_bug.cgi?id=1125174

While most, if not all, of the individual components can run in FIPS
mode there are a lot of moving parts to coordinate to ensure they comply
with the FIPS Security Policy and to handle some corner cases in the
management framework.

rob
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20160804/9a9fd7f7/attachment.htm>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: graycol.gif
Type: image/gif
Size: 105 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20160804/9a9fd7f7/attachment.gif>


More information about the Freeipa-users mailing list