7.0 Deployment Considerations for FIPS 140-2 Mode

You can optionally configure Sentinel to use Mozilla Network Security Services (NSS), which is a FIPS 140-2 validated cryptographic provider, for its internal encryption and other functions. The purpose of doing so is to ensure that Sentinel is ‘FIPS 140-2 Inside’ and is compliant with United States federal purchasing policies and standards.

Enabling Sentinel FIPS 140-2 mode causes communication between the Sentinel Server, Sentinel remote Collector Managers, Sentinel remote Correlation Engines, the Sentinel Main interface, and the Sentinel Control Center to use FIPS 140-2 validated cryptography.

IMPORTANT:FIPS mode is supported only for Sentinel. Sentinel is not supported if the operating system is in FIPS mode.