FIPS compliance overview for Cloudera Base on premises
FIPS-compliant data processing in Cloudera Base on premises integrates SafeLogic validated cryptographic modules to meet federal security mandates including FIPS 140-3, FISMA, and FedRAMP.
Cloudera Base on premises provides a secure, enterprise-grade data processing and analytics platform capable of operating in a FIPS-compliant mode.
FIPS publication 140-3 (FIPS 140-3) is the latest U.S. government standard issued by the National Institute of Standards and Technology (NIST) defining requirements for cryptographic modules. To satisfy federal compliance mandates including FISMA, FedRAMP, and DISA STIGs, information systems must use cryptographic modules validated through the Cryptographic Module Validation Program (CMVP).
In Cloudera Base on premises 7.1.5 and higher versions, the platform supports deployment on FIPS-enabled operating systems integrated with FIPS-validated cryptographic modules. This integration replaces standard, non-compliant Java Cryptographic Extension (JCE) providers such as, standard Bouncy Castle, OpenSSL, NSS, and Libgcrypt libraries with validated cryptographic modules provided by SafeLogic.
