SV-104537r1_rule
V-94707
SRG-APP-000179-NDM-000265
SYMP-NM-000280
CAT I
10
Configure the ProxySG to use only FIPS 140-2 approved algorithms.
1. Log on to the CLI via SSH.
2. Type "enable", press "Enter".
3. Type "configure", press "Enter".
4. Type "management services", press "Enter".
5. Type "edit https-console", press "Enter".
6. Type "attribute cipher-suite", press "Enter".
7. From the list displayed, enter a list of cipher numbers (comma separated) that correspond to only FIPS 140-2 approved algorithms.
Verify only FIPS 140-2 approved algorithms are used.
1. Log on to the CLI via SSH.
2. Type "show management services", press "Enter".
3. Ensure that the "Cipher Suite" attribute contains only FIPS 140-2 approved algorithms.
If Symantec ProxySG is not configured to use FIPS 140-2 approved algorithms for authentication to a cryptographic module for any protocol or application, this is a finding.
V-94707
False
SYMP-NM-000280
Verify only FIPS 140-2 approved algorithms are used.
1. Log on to the CLI via SSH.
2. Type "show management services", press "Enter".
3. Ensure that the "Cipher Suite" attribute contains only FIPS 140-2 approved algorithms.
If Symantec ProxySG is not configured to use FIPS 140-2 approved algorithms for authentication to a cryptographic module for any protocol or application, this is a finding.
M
3517