R3721-F3210-F3171-HP High-End Firewalls Access Control Command Reference-6PW101

186
The FIPS mode complies with FIPS 140-2. In CC evaluation, a device in FIPS mode means that the device
operates in compliance with the CC evaluation standards.
Related commands: display fips status.
Examples
# Enable FIPS mode.
<Sysname> system-view
[Sysname] fips mode enable
fips self-test
Syntax
fips self-test
View
System view
Default Level
3: Manage level
Parameters
None
Description
Use fips self-test to trigger a self-test on the password algorithms.
To examine whether the cryptography modules operate normally, you can use a command to trigger a
self-test on the cryptographic algorithms. The triggered self-test is the same as the power-up self-test.
If the self-test fails, the device automatically reboots.
This command is available only when FIPS mode is enabled in the configuration file.
Example
# Trigger a self-test on the cryptographic algorithms.
<Sysname> system-view
[Sysname] fips self-test
Self-tests are running. Please wait...
Self-tests succeeded.