Managing FIPS for the redirector plug-ins

This procedure allows you to establish FIPS connections between a redirector plug-in and a FIPS-enabled EAServer, and assumes you have already upgraded the redirector plug-in. See “Adding FIPS and TLS support to the Web server redirector plug-ins”.

StepsManaging FIPS for the redirector plug-ins

  1. Enable FIPS by using the standalone Security Manager. You installed the Security Manager on the machine that contains the redirector when you ran the 5.2 installation program. To start the Security Manager, go to the EAServer\bin subdirectory and run sasecmgr.bat.

  2. To enable FIPS, follow the instructions described in Chapter 9, “Using TLS and FIPS in EAServer” in the EAServer Security Administration and Programming Guide.

  3. Use a FIPS-supported cipher suite when setting the Connector.Https.qop directive in the IIS configuration file. See Chapter 4, “Installing and Configuring a Web Server Redirector Plug-In” in the Installation Guide EAServer for Microsoft Windows for information about the Connector.Https.qop directive. See Chapter 9, “Using TLS and FIPS in EAServer” in the EAServer Security Administration and Programming Guide for a list of the FIPS-supported cipher suites.