<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: What is fips-gated? in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/what-is-fips-gated/m-p/168934#M53732</link>
    <description>&lt;P&gt;This topic was posted inside Community Feedback and not in the General Discussion.. Moving topic.&lt;/P&gt;</description>
    <pubDate>Fri, 28 Jul 2017 20:15:14 GMT</pubDate>
    <dc:creator>jdelio</dc:creator>
    <dc:date>2017-07-28T20:15:14Z</dc:date>
    <item>
      <title>What is fips-gated?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-is-fips-gated/m-p/168927#M53731</link>
      <description>&lt;P&gt;can't find a definition for the setting fips-gated = true, what is fips-gated?&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jul 2017 20:12:12 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-is-fips-gated/m-p/168927#M53731</guid>
      <dc:creator>SteveSanford</dc:creator>
      <dc:date>2017-07-28T20:12:12Z</dc:date>
    </item>
    <item>
      <title>Re: What is fips-gated?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-is-fips-gated/m-p/168934#M53732</link>
      <description>&lt;P&gt;This topic was posted inside Community Feedback and not in the General Discussion.. Moving topic.&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jul 2017 20:15:14 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-is-fips-gated/m-p/168934#M53732</guid>
      <dc:creator>jdelio</dc:creator>
      <dc:date>2017-07-28T20:15:14Z</dc:date>
    </item>
    <item>
      <title>Re: What is fips-gated?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-is-fips-gated/m-p/168943#M53734</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/26204"&gt;@SteveSanford&lt;/a&gt;&lt;/P&gt;&lt;P&gt;Correct me if I'm wrong but your seeing this on your management interface correct? cfg.net.eth0.cfg and cfg.net.eth1.cfg?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 29 Jul 2017 07:05:30 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-is-fips-gated/m-p/168943#M53734</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2017-07-29T07:05:30Z</dc:date>
    </item>
    <item>
      <title>Re: What is fips-gated?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-is-fips-gated/m-p/169103#M53771</link>
      <description>&lt;P&gt;Yes it's the management interface. &amp;nbsp;Can't seem to find a definition for it in the documentation.&lt;/P&gt;</description>
      <pubDate>Mon, 31 Jul 2017 18:02:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-is-fips-gated/m-p/169103#M53771</guid>
      <dc:creator>SteveSanford</dc:creator>
      <dc:date>2017-07-31T18:02:36Z</dc:date>
    </item>
    <item>
      <title>Re: What is fips-gated?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-is-fips-gated/m-p/169135#M53773</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/26204"&gt;@SteveSanford&lt;/a&gt;&lt;/P&gt;&lt;P&gt;To the best of my knowledge it's essentially a flag checked by the maintenance console that either enables or disabled the ability to modify the mangement port IP address by booting into mainenance mode. When you enable FIPS you get blocked out of modifying this directly from the maintenance console due to the security risk associated with the ability to do so.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 31 Jul 2017 20:12:58 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-is-fips-gated/m-p/169135#M53773</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2017-07-31T20:12:58Z</dc:date>
    </item>
    <item>
      <title>Re: What is fips-gated?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-is-fips-gated/m-p/169138#M53775</link>
      <description>&lt;P&gt;Ah, thanks, makes sense. &amp;nbsp;Wonder why it's not documented very well.&lt;/P&gt;&lt;P&gt;I searched for maintenence mode and found a procedure to recover if you have forgot your IP (not sure how you would forget that). &amp;nbsp;&lt;/P&gt;&lt;P&gt;I see the setting on the example page (link below) , but no definition. &amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm seeing it set to true on my setup, so I assume that is the default.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/t5/Configuration-Articles/How-to-Configure-Management-Interface-from-Maintenance-Mode/ta-p/53004" target="_blank"&gt;https://live.paloaltonetworks.com/t5/Configuration-Articles/How-to-Configure-Management-Interface-from-Maintenance-Mode/ta-p/53004&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 31 Jul 2017 20:26:01 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-is-fips-gated/m-p/169138#M53775</guid>
      <dc:creator>SteveSanford</dc:creator>
      <dc:date>2017-07-31T20:26:01Z</dc:date>
    </item>
    <item>
      <title>Re: What is fips-gated?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-is-fips-gated/m-p/169139#M53776</link>
      <description>&lt;P&gt;FIPS certification requires that self-tests complete before the interfaces can be used.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The FIPS-Gated flag on&amp;nbsp;an interface that ensures that, while in FIPS-CC mode, the interface does not come up before FIPS mode self-tests have completed. You may see some systems with fips-disabled, which similarly means that in that mode the interface will not be available at all.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you're not in FIPS mode, the flag isn't used for anything. It's not something that can be modified, so that is likely why there is not much documentation on it. The output of the system state has a lot of things that probably aren't all that useful but are there for debug purposes.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 31 Jul 2017 20:43:25 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-is-fips-gated/m-p/169139#M53776</guid>
      <dc:creator>gwesson</dc:creator>
      <dc:date>2017-07-31T20:43:25Z</dc:date>
    </item>
    <item>
      <title>Re: What is fips-gated?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-is-fips-gated/m-p/169146#M53777</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/28203"&gt;@gwesson&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;good to know. Glad to know I wasn't terribly off then &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 31 Jul 2017 21:16:34 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-is-fips-gated/m-p/169146#M53777</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2017-07-31T21:16:34Z</dc:date>
    </item>
  </channel>
</rss>

