Puppet + Satellite 6 + FIPS 140-2 Compliance

Latest response

Anyone know if implementation of hosts managed by satellite integrated with puppet 3.6 using capsules as puppet masters is FIPS 140-2 compliant and more precisely if satellite can manage puppet agents running in FIPS 140-2 mode given dependencies within puppet on crypto libraries which aren't FIPS compatible?

we need to write an AOR if indeed this is the case

Responses

" Running the Red Hat Satellite or Red Hat Satellite Capsule Server on a FIPS enabled system is both untested and unsupported."

How is that possible if all DOD systems must be FIPS compliant?

I agree. It seems like a large oversight to not support FIPS these days.

I submitted a support ticket on July 28, 2016. There is a private report filed in bugzilla that we do not have access to (BZ#1170174)

The latest news that I have received from Red Hat support is this is not a planned feature for 6.3 or possibly even 6.4

The BZ page has recently been made public: https://bugzilla.redhat.com/show_bug.cgi?id=1170174

Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.