User's Guide Part 1

FIPS 140-2 Chapter 1 Product description
phn-0896_009v003
1-54
UNDER DEVELOPMENT
Feb 2010
Configuring HTTPS/TLS
The HTTPS/TLS interface is configured using the Security Wizard. See Configuring
FIPS 140-2 mode on page 6-108 for further d
etails of using the Security Wizard.
Exiting from the FIPS 140-2 mode
To exit from the FIPS 140-2 mode, do any of the following:
Load a PTP 600 license key that has FIPS operation disabled and reboot.
Load PTP 600 software that is not FIPS-validated and reboot.
Zeroise CSPs and reboot.
The critical security parameters (CSPs) are always erased (zeroised) on exit from FIPS
140-2 mode.
Prerequisites
CAUTION
To operate in FIPS-140-2 mode ensure that you use:
o A FIPS-approved cryptographic key generator
o A FIPS-approved X509 RSA public/private key pair generator with the
DER output format.
o A FIPS-approved random number generator
o A HTTPS-enabled web browser supporting FIPS approved cipher
specifications.