7.0 Deployment Considerations for FIPS 140-2 Mode

You can optionally configure Sentinel to use Mozilla Network Security Services (NSS), which is a FIPS 140-2 validated cryptographic provider, for its internal encryption and other functions. The purpose of doing so is to ensure that Sentinel is ‘FIPS 140-2 Inside’ and is compliant with United States federal purchasing policies and standards.

Enabling Sentinel FIPS 140-2 mode causes communication between the Sentinel Server, Sentinel remote Collector Managers, Sentinel remote Correlation Engines, the Sentinel Main interface, the Sentinel Control Center, and the Sentinel Advisor service to use FIPS 140-2 validated cryptography.

IMPORTANT:FIPS mode is supported only for Sentinel. Sentinel is not supported if the operating system is in FIPS mode.