IBM Endpoint Manager, Version 9.1

Federal Information Processing Standard (FIPS 140-2) compliance in IBM Endpoint Manager for Remote Control

The US Federal Information Processing Standard 140-2 (FIPS 140-2) is a cryptographic function validation program that defines security standards for cryptographic modules that are used in IT software. In FIPS 140-2 mode, IBM® Endpoint Manager for Remote Control uses the FIPS 140-2 approved cryptographic providers; IBMJCEFIPS (certificate #1081), IBMJSSEFIPS (certificate 409), and OpenSSL FIPS Object Module (certificate #1747). The certificate for IBMJCEFIPS (certificate #1081) is held on the NIST website at http://csrc.nist.gov/groups/STM/cmvp/documents/140-1/1401val2009.htm#1081. The certificate for IBMJSSEFIPS (certificate 409) is held on the NIST website at http://csrc.nist.gov/groups/STM/cmvp/documents/140-1/1401val2004.htm#409. The certificate for OpenSSL FIPS Object Module (certificate #1747) is held on the NIST website at http://csrc.nist.gov/groups/STM/cmvp/documents/140-1/1401val2012.htm#1747. To enable FIPS for IBM Endpoint Manager for Remote Control you must configure all components, the server, controller, and target.

IBM Endpoint Manager for Remote Control version 9.x.x uses:

IBM Java™ JCE FIPS 140-2 Cryptographic Module version 1.3.1 Tested as meeting Level 1 with Windows XP Professional SP2 operating system using IBM JVM 1.6 (single-user mode) FIPS-approved algorithms:
IBM Java JSSE FIPS 140-2 Cryptographic Module version 1.1 Tested as meeting Level 1 with FIPS-approved algorithms:

OpenSSL FIPS Object Module version 2.0.2 Tested as meeting Level 1 with

FIPS-approved algorithms:


Feedback