Help
  • Explore Community
  • Get Started
  • Ask the Community
  • How-To & Best Practices
  • Contact Support
Notifications
Login / Register
Community
Community
Notifications
close
  • Forums
  • Knowledge Center
  • Events & Webinars
  • Ideas
  • Blogs
Help
Help
  • Explore Community
  • Get Started
  • Ask the Community
  • How-To & Best Practices
  • Contact Support
Login / Register
Sustainability
Sustainability

Ask Me About Webinar: Data Center Assets - Modeling, Cooling, and CFD Simulation
Join our 30-minute expert session on July 10, 2025 (9:00 AM & 5:00 PM CET), to explore Digital Twins, cooling simulations, and IT infrastructure modeling. Learn how to boost resiliency and plan power capacity effectively. Register now to secure your spot!

Additional considerations when enabling FIPS mode in Data Center Expert

DCE Security

cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for 
Show  only  | Search instead for 
Did you mean: 
  • Home
  • Schneider Electric Community
  • EcoStruxure IT Help Center
  • EcoStruxure IT Help Center Categories
  • Data Center Expert
  • DCE Security
  • Additional considerations when enabling FIPS mode in Data Center Expert
Options
  • Mark as New
  • Mark as Read
  • Bookmark
  • Subscribe
  • Email to a Friend
  • Printer Friendly Page
  • Report Inappropriate Content
Invite a Co-worker
Send a co-worker an invite to the portal.Just enter their email address and we'll connect them to register. After joining, they will belong to the same company.
You have entered an invalid email address. Please re-enter the email address.
This co-worker has already been invited to the Exchange portal. Please invite another co-worker.
Please enter email address
Send Invite Cancel
Invitation Sent
Your invitation was sent.Thanks for sharing Exchange with your co-worker.
Send New Invite Close

Related Forums

  • EcoStruxure IT forum

  • APC UPS Data Center & Enterprise Solutions Forum

Previous Next
Related Products
product field
Schneider Electric
Data Center Expert

Invite a Colleague

Found this content useful? Share it with a Colleague!

Invite a Colleague Invite

EcoStruxure IT Support

Submit a support request for additional assistance with EcoStruxure IT software.

Request Support
Back to DCE Security
Options
  • Mark as New
  • Mark as Read
  • Bookmark
  • Subscribe
  • Email to a Friend
  • Printer Friendly Page
  • Report Inappropriate Content
1 Like
25 Views

Link copied. Please paste this link to share this article on your social media post.

Trying to translate this page to your language?
Select your language from the translate dropdown in the upper right. arrow
Translate to: English
  • (Français) French
  • (Deutsche) German
  • (Italiano) Italian
  • (Português) Portuguese
  • (Русский) Russian
  • (Español) Spanish

Additional considerations when enabling FIPS mode in Data Center Expert

Lt. Commander ATrabert Lt. Commander
‎2025-08-18 11:03 AM

Last Updated: Sisko JLehr Sisko ‎2025-08-18 11:14 AM

 

After enabling FIPS mode in Data Center Expert in System > Server Administration Settings > Server Access > Security Policy, any devices or configuration settings that match the conditions below also must be updated.

 

Any devices or systems that have not been updated to meet this stricter cryptography policy may have communication issues and present errors in the Data Center Expert web and desktop client. 

Errors may also be present in nbc.xml log. The nbc.xml log can be viewed from the Data Center Expert web client View Logs in the upper right corner.

 

See the documentation for security policy definitions from Red Hat here.

 

 

SNMPv3

 

Update any SNMPv3 devices that were using MD5 for Authentication Type or DES for Encryption Type to an SHA/AES equivalent on the device and in DCE SNMP Device Scan Settings so DCE can poll it via SNMPv3.

 

    • Devices can be updated using APC SNMP Device Mass Configuration

      https://community.se.com/t5/DCE-configuration/Mass-Configuration-of-APC-Network-Management-Card-type...

       

    • SNMP Device Scan Settings: Device > SNMP Communication Settings > Device Scan Settings

      https://community.se.com/t5/DCE-configuration/Device-Scan-Settings-option-for-SNMP-devices/ta-p/4468...

       

DCE Backups

 

Any previously configured DCE backups to Windows cifs/smb shares will no longer work due to NTLM security protocols using MD5.  An NFS backup must be configured instead, and any previous backups should be moved to the new or existing NFS share.

 

  • DCE Backup Settings: System > Server Administration Settings > Server Backup/Restore

    https://community.se.com/t5/DCE-server-administration/DCE-server-Backup-Restore/ta-p/446756

     

Saved Reports Windows Exports

 

Any previously configured saved reports that use Windows Export to a cifs/smb share will no longer work due to NTLM security protocols using MD5. An NFS Export will need to be configured instead, all saved reports will need to be edited and configured to use the new or existing NFS share, and any previous saved reports should be moved to the same NFS share.

 

  • DCE Export Scheduling: Reports > Manage Export Scheduling

    https://community.se.com/t5/DCE-reports/Managing-the-export-action-configurations/ta-p/446845

 

 

SSL Protocol and Certificates

 

All SSL connections to devices and other systems, such as device web pages, SMTP, LDAPS, and API integrations, must be at minimum TLS 1.2 and 2048-bit.

Certificates must include the Subject Alternative Name with the fully qualified domain name (FQDN) and IP address of the monitored device or connected server. New certificates may be required.

 

  • Server SSL Certificates: System > Server Administration Settings > Server SSL Certificates

    https://community.se.com/t5/DCE-server-administration/Server-SSL-Certificates/ta-p/446771

     

NetBotz SSL Communication

 

NetBotz 355/350/455/550/570 and NetBotz 750/755 require recent firmware versions to communicate with DCE in FIPS mode.

 

  • NetBotz 355/350/455/550/570 requires firmware version 4.5.2 or higher to support TLS 1.2. 
  • NetBotz 750/755 requires version 5.4.x and newer for HTTPS related security fixes.

 

 

Desktop Client

 

Although not required, the Data Center Expert desktop client should be reinstalled with FIPS mode enabled to ensure secure communication between client and server.

 

 

 

Was this article helpful? Yes No
No ratings

Link copied. Please paste this link to share this article on your social media post.

Didn't find what you are looking for? Ask our Experts
To The Top!

Forums

  • APC UPS Data Center Backup Solutions
  • EcoStruxure IT
  • EcoStruxure Geo SCADA Expert
  • Metering & Power Quality
  • Schneider Electric Wiser

Knowledge Center

Events & webinars

Ideas

Blogs

Get Started

  • Ask the Community
  • Community Guidelines
  • Community User Guide
  • How-To & Best Practice
  • Experts Leaderboard
  • Contact Support
Brand-Logo
Subscribing is a smart move!
You can subscribe to this board after you log in or create your free account.
Forum-Icon

Create your free account or log in to subscribe to the board - and gain access to more than 10,000+ support articles along with insights from experts and peers.

Register today for FREE

Register Now

Already have an account? Login

Terms & Conditions Privacy Notice Change your Cookie Settings © 2025 Schneider Electric

Welcome!

Welcome to your new personalized space.

of