Uploaded image for project: 'JBoss Enterprise Application Platform'
  1. JBoss Enterprise Application Platform
  2. JBEAP-29332

Documentation for using BouncyCastle FIPS needs updates

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Done
    • Icon: Blocker Blocker
    • None
    • 8.1.0.Beta
    • Documentation, Security
    • None

      In time of EAP 8.0 release, there was available BouncyCastle FIPS 1.x supporting just Java 11-. Now, for EAP 8.0 and 8.1, there is a new 2.x release available, supporting Java 11, 17, and 21. This new version requires a bit different configuration, especially:

      • org.bouncycastle:bcutil-fips artifact is required
      • provider classes need to be explicitly defined, in module adding the artifacts or in provider configuration of Elytron subsystem

      Update the https://docs.redhat.com/en/documentation/red_hat_jboss_enterprise_application_platform/8.0/html-single/secure_storage_of_credentials_in_jboss_eap/index#creating-fips-140-2-compliant-credential-store-using-bouncycastle-providers_creating-fips-140-2-compliant-credential-store-using-bouncycastle-providers accordingly for EAP 8.1.

      Setting priority to Blocker as it would be terrible UX for this supported use case if users were forced to find the way on their own.

              sybrown Symone Simpkins
              okotek@redhat.com Ondrej Kotek
              Votes:
              0 Vote for this issue
              Watchers:
              5 Start watching this issue

                Created:
                Updated:
                Resolved: