SonicOS 7 Device Settings

Enabling FIPS Mode

When operating in FIPS (Federal Information Processing Standard) Mode, the SonicWall security appliances support FIPS 140-2 Compliant security. Among the FIPS-compliant features of the son include PRNG-based on SHA-1 and support of only FIPS-approved algorithms (DES, 3DES, and AES with SHA-1).

To enable FIPs and see a list of which of your current configurations are not allowed or are not present

The Enable FIPS Mode option cannot be enabled at the same time as the Enable NDPP Mode option, which is also on the dialog.

  1. Navigate to Device | Settings > Firmware and Settings.
  2. Click Settings.
  3. Click FIPS/NDPP.
  4. Enable the Enable FIPS Mode option.

  5. Click OK.

    The FIPS Mode SETTING COMPLIANCE CHECKLIST dialog appears with a list of your required and not allowed configurations.

  6. If your SonicWall appliance:
    • Complies with the checklist, go to Step 7.
    • Does not comply with the checklist, manually change or disable settings to be compliant with FIPS mode setting compliance checklist.

      Leave the checklist dialog open while you make the configuration changes. If you click OK before all required changes are complete, the Enable FIPS Mode checkbox is cleared automatically upon closing the verification dialog. Select the checkbox again to see what configuration changes are still needed for FIPS compliance.

  7. Click OK to reboot the security appliance in FIPS mode. A second warning displays.
  8. Click Yes to continue rebooting. To return to normal operation, clear the Enable FIPS Mode checkbox and reboot the firewall in non-FIPS mode.

    When using the SonicWall security appliance for FIPS-compliant operation, the tamper-evident sticker that is affixed to the SonicWall security appliance must remain in place and untouched.

Was This Article Helpful?

Help us to improve our support portal

Techdocs Article Helpful form

  • Hidden
  • Hidden

Techdocs Article NOT Helpful form

  • Still can't find what you're looking for? Try our knowledge base or ask our community for more help.
  • Hidden
  • Hidden