About FIPS

FIPS (Federal Information Processing Standard) 140-2 is a U.S. government standard relating to computer security and encryption. The Scalar i500 offers a FIPS 140-2 Level 1 certified encryption solution composed of the Scalar Key Manager and HP LTO-5 Fibre Channel or HP LTO-6 Fibre Channel tape drives in a Scalar i500 library. FIPS mode can be enabled on the HP LTO-5 or HP LTO-6 tape drives via the library user interface. Once in FIPS mode, all encryption key communication between the tape drive and the library controller is authenticated. FIPS mode is disabled by default.

This topic discusses:

Requirements for FIPS

Configuring FIPS Mode on the Library

Upgrade library firmware to version 600G or later.

  1. For all HP LTO-5 FC and HP LTO-6 FC tape drives that you plan to enable for FIPS, upgrade firmware to the latest qualified version (see the Scalar i500 Release Notes for qualified firmware levels).
  2. Shut down the library.
  3. Establish Ethernet connectivity. See the Scalar i500 User's Guide for how to establish Ethernet connectivity in 5U libraries, or how to install an Ethernet Expansion blade in 14U and larger libraries.
  4. Power on the library.
  5. Install Storage Networking and Encryption Key Management licenses on the library, if they are not already installed.
  6. Enable FIPS mode as follows (see Configuring Partition Encryption for more information):
    1. On the library web client, select Setup > Encryption > Partition Configuration.

      The Setup - Encryption Partition Configuration screen displays.
    2. Change the Encryption Method of the partition to Library Managed Encryption enabled.
    3. Select the FIPS check box to enable FIPS mode for the partition.
    4. Click Apply.

Viewing FIPS Status on the Library

There are three ways to view FIPS status on the library:

See also: