When operating in FIPS (Federal Information Processing Standard) Mode, the SonicWall security appliances support FIPS 140-2 Compliant security. Among the FIPS-compliant features of the son include PRNG-based on SHA-1 and support of only FIPS-approved algorithms (DES, 3DES, and AES with SHA-1).
To enable FIPs and see a list of which of your current configurations are not allowed or are not present
The Enable FIPS Mode option cannot be enabled at the same time as the Enable NDPP Mode option, which is also on the dialog.
Enable the Enable FIPS Mode option.
Click OK.
The FIPS Mode SETTING COMPLIANCE CHECKLIST dialog appears with a list of your required and not allowed configurations.
Does not comply with the checklist, manually change or disable settings to be compliant with FIPS mode setting compliance checklist.
Leave the checklist dialog open while you make the configuration changes. If you click OK before all required changes are complete, the Enable FIPS Mode checkbox is cleared automatically upon closing the verification dialog. Select the checkbox again to see what configuration changes are still needed for FIPS compliance.
Click Yes to continue rebooting. To return to normal operation, clear the Enable FIPS Mode checkbox and reboot the firewall in non-FIPS mode.
When using the SonicWall security appliance for FIPS-compliant operation, the tamper-evident sticker that is affixed to the SonicWall security appliance must remain in place and untouched.