Installation of a cluster in FIPS mode
To install a cluster in FIPS mode, follow the instructions to install a customized cluster on your preferred infrastructure. Ensure that you set fips: true in the install-config.yaml file before you deploy your cluster.
|
|
To enable FIPS mode for your cluster, you must run the installation program from a RHEL computer configured to operate in FIPS mode. For more information about configuring FIPS mode on RHEL, see Installing the system in FIPS mode. |
|
|
If you are using Azure File storage, you cannot enable FIPS mode. |
To apply AES CBC encryption to your etcd data store, follow the "Encrypting etcd data" process after you install your cluster.