Are Control-M/Enterprise Manager, Control-M/Server, Control-M/Agent, Control-M for MFT FIPS Compliant? |
The only Control-M component that is FIPS certified is Control-M for MFT (See KA 000205693 )
In general, Control-M performs security hardening of all components regardless of FIPS compliance (although there are similarities with FIPS requirements, such as encryptions, cyphers, data at rest and transit, etc). We allow Agents and Desktop Client machines to work with FIPS mode enabled, even while the application itself isn’t set to FIPS mode. Ensure Control-M/Enterprise Manager's System Parameter "PasswordEncode" is set to "5". This allows the client to pass AES256 authentication, which is used by FIPS. |