An Azure analytics service that brings together data integration, enterprise data warehousing, and big data analytics. Previously known as Azure SQL Data Warehouse.
Hi Kishor,
The error:
“This implementation is not part of the Windows Platform FIPS validated cryptographic algorithms.”
is consistent with the documented FIPS issue for a Self-hosted Integration Runtime (SHIR) running on a Windows server with FIPS enabled. Microsoft documents that FIPS mode can block cryptographic classes that Copy Activity depends on. [Troublesho...soft Learn | Learn.Microsoft.com], [Create a s...soft Learn | Learn.Microsoft.com]
Microsoft provides the following workaround:
- On the SHIR server, open:
C:\Program** Files\Microsoft Integration Runtime **<version>\Shared\diawp.exe.config
- Under the
<runtime>section, add:
<enforceFIPSPolicy** **enabled="false"/>
Save the file and restart the Self-hosted Integration Runtime machine.
Retry the SFTP Copy Activity. [Troublesho...soft Learn | Learn.Microsoft.com]
However, in your scenario FIPS must remain enforced due to regulatory/security requirements. Therefore, I would not recommend applying this workaround unless your security/compliance team approves it.
Instead, consider moving the SFTP Copy Activity away from the FIPS-enabled Windows SHIR. The SFTP connector supports Azure Integration Runtime as well as Self-hosted Integration Runtime. Microsoft also documents Managed Virtual Network Integration Runtime as an option for accessing an on-premises network. The appropriate option depends on how the SFTP server is network-restricted. [Copy and t...soft Learn | Learn.Microsoft.com]
Therefore, if FIPS cannot be bypassed, I recommend evaluating Azure IR or Managed VNet IR for the SFTP connection rather than changing the FIPS policy on the existing SHIR.
References:
- Troubleshoot Azure Data Factory and Azure Synapse Analytics connectors [Troublesho...soft Learn | Learn.Microsoft.com]
- Copy and transform data in SFTP server using Azure Data Factory or Azure Synapse Analytics [Copy and t...soft Learn | Learn.Microsoft.com]
- Create and configure a self-hosted integration runtimehttps://learn.microsoft.com/en-us/azure/data-factory/create-self-hosted-integration-runtime?tabs=data-factory