Use this procedure to enable hardened security profile for Session Manager.
Procedure
Log in to the Session Manager command line interface.
Switch to the root user or sroot user using one of the following commands:
su - root
su - sroot
Run the following command:
setSecurityPolicy
At the prompt, select the profile to use.
Profiles
---------------
1) Standard
2) Hardened
3) Military
4) Custom
Select profile:
To select Hardened profile, type 2 and press Enter.
The system displays the following message:
This profile will enable FIPS. This will result in certain
features being disabled and requires a reboot. Once the hardened
profile is selected it cannot be reversed. The Session Manager
would need to be reloaded. Consult documentation for further details.
Do you want to continue? [yes/no]:
At the prompt, type y and press Enter.
The Session Manager reboots for changes to take effect.
Note:
When you run the setSecurityPolicy command, you also select the boot password. You must log in to the VMware or KVM console and enter the boot password after Session Manager restarts.