2 Installing a FIPS Feature Set and Upgrading a FIPS System
This chapter describes the procedure for installing a FIPS feature set
(if one is not already present on the system) and upgrading the image on a
system that already has FIPS provisioned.
Note:
You enable the FIPS feature set via the Data Integrity entitlement by way of the setup entitlements command.When enabling the FIPS feature set, the
ESBC warns the user
with the following message:
CAUTION: Enabling this feature activates enhanced FIPS security functions. Once saved, factory rest may be required.
Installing a FIPS Feature Set
For the method in which the FIPS feature is installed, see the Session Border Controller Release Notes. For instructions on provisioning the FIPS feature, see the Session Border Controller ACLI Configuration Guide.
Upgrading the Image on a FIPS Enabled System
This procedure assumes that the FIPS feature is already installed on the system. If the FIPS feature set on your system expires, you must install a valid FIPS feature. For more information on installing a FIPS feature set, see "Installing a FIPS Feature Set".
The following are required to install the
FIPS feature set:
- SSH File Transfer Protocol (SFTP) client with access to the target Acme Packet platform.
- SFTP access to the target Acme Packet platform's management IP address.
- Access to the FIPS software image to which you are upgrading.
Note:
You must follow this procedure on a running device:Note:
The steps below use the text, <release>, as a variable to generalize the file's release version.