SV-213603r508024_rule
V-213603
SRG-APP-000179-DB-000114
PPS9-00-004900
CAT I
10
There is no known fix for a FIPS-compliant OpenSSL library on Microsoft Windows at this time.
Configure RHEL OpenSSL as defined in section 9.1 of the RHEL OpenSSL FIPS Compliance documentation here:
http://csrc.nist.gov/groups/STM/cmvp/documents/140-1/140sp/140sp1758.pdf
If a FIPS-certified OpenSSL library is not installed and configured, this is a finding.
Run this command to ensure that you are running RHEL: "cat /etc/redhat-release"
Run this command to see the OpenSSL version: "openssl version"
If "/etc/redhat-release" does not show a supported version of Red Hat Enterprise Linux or if the openssl version does not include "-fips" in the version, this is a finding.
V-213603
False
PPS9-00-004900
If a FIPS-certified OpenSSL library is not installed and configured, this is a finding.
Run this command to ensure that you are running RHEL: "cat /etc/redhat-release"
Run this command to see the OpenSSL version: "openssl version"
If "/etc/redhat-release" does not show a supported version of Red Hat Enterprise Linux or if the openssl version does not include "-fips" in the version, this is a finding.
M
3988