Company
Date Published
Author
Kavya Shivashankar
Word count
1057
Language
English
Hacker News points
None

Summary

Federal Information Processing Standards (FIPS) are guidelines developed by the U.S. government to ensure that IT systems used by federal agencies meet specific security requirements, with FIPS 140-2 focusing on the security of cryptographic modules. Redpanda, a real-time data streaming platform, offers FIPS compliance through the use of OpenSSL libraries validated for FIPS 140-2, with future plans to transition to OpenSSL 3.1.2 for FIPS 140-3 compliance. This compliance is essential for operating in environments with strict federal security standards, and Redpanda provides enterprise features for deploying FIPS-compliant clusters on Red Hat Enterprise Linux. The platform offers different FIPS mode settings, including disabled, enabled, and permissive, catering to various production and development needs. Implementing FIPS compliance involves configuring the operating system to support FIPS and installing specific Redpanda packages. Redpanda also provides automation tools, such as an Ansible Collection, to streamline the installation and configuration process for FIPS mode, ensuring robust security protocols and adherence to approved cryptographic standards.