FIPS 140-2 cryptographic module support

Federal Information Processing Standards (FIPS) Publication 140-2 is a United States Federal security requirement for cryptographic modules.

A variant of MCR that makes use of a FIPS 140-2 certified cryptographic module is available for supported Linux distros. You can obtain this FIPS-mode MCR variant in the stable-25.0/fips update channel. All FIPS-mode variants of the software components have version numbers that contain the +fips identifier as a suffix.

Note

MCR supports FIPS 140-2, however MKE and MSR currently do not.

To confirm that a FIPS-mode version of MCR is installed, confirm that the docker info command lists fips under Security Options:

Security Options:
 fips