Skip to main content

Administrating MarkLogic Server

Configuring OpenSSL FIPS 140-2 Mode

When FIPS 140-2 mode is enabled, the OpenSSL library is initialized into FIPS 140-2 mode at system startup. Note that this is the default behavior of MarkLogic Server. If FIPS mode is enabled or disabled on a running system, the OpenSSL library is reconfigured appropriately without requiring a server restart. When the FIPS mode setting changes and secure XDQP is configured, all XDQP connections are dropped and reestablished.

To configure a cluster to run in FIPS 140-2 mode, follow these steps:

  1. Log into the Admin Interface.

  2. Click the Clusters icon on the left tree menu.

  3. Select the local cluster.

  4. Click the Configure tab to open the Edit Local Cluster Configuration page:

    clusters_v10.gif
  5. To configure FIPS 140-2 mode, select true or false as needed. For SSL FIPS Enabled, select true.

  6. Click OK to save the changes.