I’m looking for instructions to configure Kong to be FIPS compliant, specifically FIPS 140-2 encryption.
The following post FIP mode enable dating back to 2018, indicates compiling the FIPS version of OpenSSL library, Openresty as well as luarocks and then installing them on the server.
Is this the official recommended way, the only way to accomplish FIPS compliance? Is there a version of Kong that supports it out of the box? Does the enterprise version support it?
Thank you in advance.