FIPS 140-3 cryptography in the BigFix environment

BigFix uses the BigFix Cryptographic Module to perform cryptographic functions throughout its environment.

For instance, every time an operator logs into the BigFix console, creates a new user, initiates an action, or subscribes to new content there are cryptographic operations performed by this module.

Starting from BigFix Platform Version 11.0.7, the BigFix Cryptographic Module uses OpenSSL FIPS Object Module that has been certified by NIST as compliant with the FIPS (Federal Information Processing Standard) 140-3 standard.

Note: BigFix Platform pre-11 components will no longer work if you enable FIPS 140-3.
Note: If you enable FIPS 140-3, BigFix Platform 11 components up to 11.0.6, will run in FIPS 140-2 mode.
Note: If you enable FIPS 140-3, BigFix Server requires at minimum the usage of the TLS 1.2 protocol with the Extended Master Secret (EMS) extension to successfully connect to HTTPS servers.