You can optionally enable FIPS mode when you install the sensor on an endpoint for the first time.

As of macOS sensor version 3.6.1.10, you can enable FIPS mode to ensure that a sensor can only communicate with a backend in compliance with FIPS standards for TLS.

Note: This option is only available with macOS sensor version 3.6.1.10.

Prerequisite:

Enable FileVault on the endpoint for disk encryption before installing the sensor. Go to System Preferences > Security & Privacy > FileVault and turn on FileVault. You can verify the status by running the following command in Terminal, which should return the message that "FileVault is On".

`sudo fdesetup status`