FIPS Support for Self-Hosted Spacelift Server Images

Build two images when releasing new versions of Spacelift, with the new one having FIPS enabled and tagged with -FIPS or something similar.

The FIPS image should also include a log message that verifies it’s enable on-boot. This eliminates the need for the user to enable exec mode to confirm it for auditors.

Ideally, all install methods including CloudFormation, would include an option to enable FIPS. This would automatically select the FIPS image.

Workaround
-
Problem
We have an audit requirement to enable FIPS mode.

Please authenticate to join the conversation.

Upvoters
Status

πŸ”­ Discovery

Board

πŸ’‘ Feature Requests

Tags

Self-hosted

Date

1 day ago

Subscribe to post

Get notified by email when there are changes.