FIPS Compliance with Titan MFT Server
Question
How can I ensure FIPS Compliance with Titan MFT Server in my Windows environment?
Answer
Titan MFT Server can meet FIPS Compliance requirements. There are configuration items within Titan MFT Server to consider, as well as Operating System configurations to ensure on the system running Titan.
Pre-requisites
Titan MFT Server installed on a compatible Windows Server system
Titan MFT Server Administrator Account created and credentials available
Active Trial or License for Titan MFT Server use
Access and Permissions to make changes to Windows environment, including registry and policies
Steps
Login to the Titan Server Administrator using valid credentials
Navigate to the specific Services that are to be used in Titan (e.g. FTPS, SFTP, HTTPS)
Enable the setting to “Enable FIPS Compliance…” for each of the Services of interest. Choose “Apply”.
NOTE: This option ensures the encryption methods enabled within Titan are all FIPS compliant, and any non-compliant options will be disabled.
Screenshots attached as reference
If preferring to not use the “Enable FIPS Compliance…” option, ensure that under the SFTP settings in Titan, the Ciphers, MACs, and Key Exchanges in use are all FIPS Compliant, and be sure to disable weak options.
Review links from Windows regarding ensuring OS is FIPS Compliant:
See attached documentation with additional recommendations for configuration and use of Titan Server.
Related to: Titan MFT Server – Current versions