If installing EFM on FIPS-complaint servers using TPA: TPA will be unable to create the efm database user if FIPS is enabled during the deployment. To ensure that EFM installs correctly during the TPA deployment, perform the following steps: Disable FIPS on all servers during the deployment Re-enable FIPS after the deployment Create a scram-sha-256 encrypted password for the efm database user After deployment with the default md5 encryption, create a scram-sha-256 encrypted password for the efm database user and store that password in the TPA vault: >> On database server: enterprisedb@database