SV-214157r508027_rule
V-214157
SRG-APP-000179-DB-000114
PGS9-00-012800
CAT I
10
Install PostgreSQL on an operating system with FIPS-compliant cryptography enabled; or by other means ensure that FIPS 140-2-certified OpenSSL libraries are used by the DBMS.
If the deployment incorporates a custom build of the operating system and PostgreSQL guaranteeing the use of FIPS 140-2- compliant OpenSSL, this is not a finding.
Go to the below webpage and click "show all":
https://csrc.nist.gov/projects/cryptographic-module-validation-program/validated-modules/search
Note: Certificates 3130, 3016, and 2441 are the most common.
If the OS is not using a FIPS 140-2 certified implementation that is listed, this is a finding.
If FIPS encryption is not enabled, this is a finding.
V-214157
False
PGS9-00-012800
If the deployment incorporates a custom build of the operating system and PostgreSQL guaranteeing the use of FIPS 140-2- compliant OpenSSL, this is not a finding.
Go to the below webpage and click "show all":
https://csrc.nist.gov/projects/cryptographic-module-validation-program/validated-modules/search
Note: Certificates 3130, 3016, and 2441 are the most common.
If the OS is not using a FIPS 140-2 certified implementation that is listed, this is a finding.
If FIPS encryption is not enabled, this is a finding.
M
3994