Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Add_workflow_for_techpubs
AUTH1UserResourceIdentifier{userKey=8a00a0c86e9b2550016ec54396b5000a, userName='null'}
JIRAIDAUTHSBX-125990
REV5UserResourceIdentifier{userKey=8a00a02355cd1c2f0155cd26cb8305e9, userName='null'}
REV6UserResourceIdentifier{userKey=8a00a02355cd1c2f0155cd26cb8305e9, userName='null'}
REV3UserResourceIdentifier{userKey=8a00a02355cd1c2f0155cd26cb1f0553, userName='null'}
REV1UserResourceIdentifier{userKey=8a00a0c8613a801e016164cf6aad0021, userName='null'}

Panel

In the section:

Table of Contents
maxLevel4

Include Page
_FIPS_140_3_

does_not_support_3DES

security_restrictions
_FIPS_140_3_

does_not_support_3DES

security_restrictions

Panel

In the section:

Table of Contents
maxLevel4


Available_since
TypeAvailable Since
Release10.1.3



The SBC 10.1.3 complies with the FIPS-140-3 standard. This feature enhances the SBC's FIPS Object Module and introduces known answer tests for cryptographic algorithms FFC (Diffie-Hellman), SSH-KDF, and TLS-KDF for the new FIPS standard FIPS-140-3 to perform as known answer tests during the Power-On Self Tests (POSTs)These tests are added to the OpenSSL FIPS object module implementation.

Command Syntax

Code Block
% set system admin <SYSTEM NAME> fips-140-3 mode <disabled | enabled>


Command Parameters

Parameter

Description

fips-140-3 mode

Use this object to enable FIPS-140-3 mode.

  • disabled (default)
  • enabled 

NOTE: Once fips-140-3 mode is enabled, it cannot be 'disabled' through the configuration. A fresh software installation is required to set the FIPS-140-3 mode back to 'disabled'.

Configuration Example

Code Block
set system admin vsbcSystem fips-140-3 mode enabled