Adding FIPS and TLS support to the Web server redirector plug-ins

This section describes how to configure the Web server redirector plug-in to use TLS and FIPS for each supported Web server. The FIPS-supported Web servers are, as follows:

Adding support for FIPS and TLS in your Web server redirector plug-ins requires you to:

  1. Run the Full installation for new EAServer installation. This will include the Web server plug-in and the FIPS-related files.

  2. Run the EAServer 5.5 upgrade installation program if you are upgrading EAServer. Refer to “Upgrading, reinstalling, or adding components” for more details.

  3. Copy libraries from the EAServer 5.5 installation to the appropriate Web server directory. This assumes you are copying the files from the same machine.

  4. Make changes to the corresponding configuration files.

  5. Use the newly installed standalone Security Manager to enable FIPS for the redirector.

  6. Select a FIPS-compatible cipher suite when setting the Connector.Https.qop directive in the redirector configuration file.

  7. Restart the Web server for the changes to take effect.