-
Type:
Suggestion
-
Resolution: Unresolved
-
None
-
Component/s: Security
-
None
-
25
-
50
Problem Definition
At the moment, Confluence Data Center is not FIPS 140-2 compliant, which is a requirement for some of our customers.
Suggested Solution
Either implement the required security requirements on Confluence Data Center to ensure it is FIPS 140-2 compliant out of the box, or give administrators a supported / documented option to enable FIPS 140-2 compliance on their instance.
Workaround
It looks like it might be possible to achieve FIPS 140-2 Compliance on Confluence at a JVM and/or OS level, however this is not really the same as a supported solution that would ensure compliance is maintained as FIPS requirements change and Confluence is updated.