Oracle® ILOM Security Guide For Firmware Releases 3.x and 4.x

Updated: December 2019

Choosing Whether to Configure FIPS Mode At Deployment

As of Oracle ILOM firmware release 3.2.4, the Oracle ILOM CLI and web interface provide a configurable mode for Federal Information Processing Standards (FIPS) Level 1 compliance. When this mode is enabled, Oracle uses cryptographic algorithms in compliance with the FIPS 140-2 security standards for protecting system sensitive or valuable data.

System administrators deploying servers with firmware 3.2.4 or later should decide whether to configure FIPS mode prior to configuring other Oracle ILOM properties. By default, the FIPS compliance mode in Oracle ILOM is shipped disabled. Changes to the FIPS compliance mode will cause all configuration data to be reset to their factory default values.

To enable FIPS mode compliance at deployment (prior to configuring Oracle ILOM properties), see Enable FIPS Mode at Deployment. In the case where user-defined configuration properties have already been set in Oracle ILOM and you need to modify the FIPS property, see Post Deployment Actions for Modifying FIPS Mode.