FIPS Status Icons
While Palette VerteX brings FIPS 140-2 cryptographic modules to the Palette management platform and deployed clusters, it also provides the capability to consume features that are not FIPS compliant. For example, when the cluster import option is enabled, it allows users to import any type of Kubernetes cluster, including some that are not fully FIPS compliant. Similarly, when the option to add non-FIPS add-on packs is enabled, users can add packs in cluster profiles that are not FIPS compliant. For more information about these tenant-level settings, refer to Enable non-FIPS Settings.
To avoid confusion and compliance issues, Palette VerteX displays icons to indicate the FIPS compliance status of clusters, profiles, and packs.
The table lists icons used to indicate FIPS compliance status. The partial FIPS compliance icon applies only to clusters and profiles because these may contain packs with an Unknown or Not FIPS-compliant status.
Icon | Description | Applies to Clusters | Applies to Profiles | Applies to Packs |
---|---|---|---|---|
Full FIPS compliance. All packs in the cluster are FIPS-compliant. | ✅ | ✅ | ✅ | |
Partial FIPS compliance. Some packs are FIPS compliant, but there is at least one that is not. | ✅ | ✅ | ❌ | |
Not FIPS-compliant. None of the packs in the cluster are FIPS-compliant. | ✅ | ✅ | ✅ | |
Unknown state of FIPS compliance. This applies to imported clusters that were not deployed by Palette. | ✅ | ✅ | ✅ |
The screenshots below show how Palette VerteX applies FIPS status icons.
When creating a cluster profile, you can filter packs by checking the FIPS Compliant checkbox to display only FIPS-compliant packs.
When you create a profile, icons display next to packs.
Icons appear next to each profile layer to indicate FIPS compliance.
In this screenshot, Palette VerteX shows FIPS status for the cluster is partially compliant because one pack in the profile is not FIPS-compliant.