Forums

Articles
Create
cancel
Showing results for 
Search instead for 
Did you mean: 

Is JIRA FIPS 140-2 compliant on premises?

AD
I'm New Here
I'm New Here
Those new to the Atlassian Community have posted less than three times. Give them a warm welcome!
January 30, 2017

Gov't regulation required FIPS 140-2 mode to be enable on the server. JIRA and Confluence are FIPS 140-2 compliant, means if installation of these tools on premises servers will not be a showstopper with FIPS 140-2 enabled on the server.

Please advise ASAP.

 

Thank you,

 

1 answer

1 vote
Nic Brough -Adaptavist-
Rising Star
Rising Star
Rising Stars are recognized for providing high-quality answers to other users. Rising Stars receive a certificate of achievement and are on the path to becoming Community Leaders.
January 30, 2017

That's a function of the operating system and security layers, not the application.

When it comes to compliance with assorted arbitrary rule sets, see https://www.atlassian.com/trust/faq on the subject.

Matt Riley
I'm New Here
I'm New Here
Those new to the Atlassian Community have posted less than three times. Give them a warm welcome!
April 2, 2020

Sorry to revive a dead thread, but this is the top Google result.

 

This is not completely correct, if your app does not do encryption itself but depends on the operating system, then it is true.

However, if any code doing encryption is included in the app or is linked with a library that is not compliant, then it is incorrect.

There is no way to tell without a formal answer or inspecting all the code.

 

It would help if we had a formal answer from Atlassian.

Christopher D Holcombe Sr_ October 13, 2020

I would also like an answer to this question...

Suggest an answer

Log in or Sign up to answer