|
We are looking to utilize SFTPGo, but need to verify that it is fips 140-2 compliant. I've read about using boringcrypto, or the redhat tool chain, to meet fips compliance needs, but am not sure how to go about that. We are currently using a version packaged via helm, but we can build our own image if we need to so that we can get fips compliance. |
Replies: 1 comment
|
You must build SFTPGo with a FIPS-enabled Go compiler and enable FIPS mode in your runtime environment. This way you can claim SFTPGo is using a FIPS-certified cryptographic module. Please check the support policy. Thank you |
You must build SFTPGo with a FIPS-enabled Go compiler and enable FIPS mode in your runtime environment. This way you can claim SFTPGo is using a FIPS-certified cryptographic module. Please check the support policy. Thank you