I am an assessor trying to get some insight into whether the Bouyant.io containers are FIPS validated or compliant. I found a page that mentions there is/are FIPS 140-2/3 CMVP(s) for Bouyant.io but it says “compliant” or in “compliance” with FIPS 140-2/3. So…I wanted to get clarification in that area because these are fundamentally different in that you can run a FIPS compliant configuration while not using FIPS validated cryptographic modules, and if it is FIPS validated you may want to change the way it is advertised to avoid confusion among FedRAMP seeking CSPs, Assessors, and others associated with the FedRAMP program.
Related Topics
Topic | Replies | Views | Activity | |
---|---|---|---|---|
Linkerd with GRPC version compatibilty and connections settings | 1 | 419 | July 26, 2023 | |
Having https end to end | 0 | 217 | March 15, 2024 | |
Linkerd denies probe to certain server only | 2 | 323 | June 1, 2023 | |
Meshed pods fail to connect to unmeshed smtp/redis pods with Linkerd 2.14.2 | 10 | 1250 | November 9, 2023 | |
Basic question I create a server but it's not restricting traffic | 4 | 366 | October 2, 2023 |