SV-233335r616546_rule
V-233335
SRG-NET-000492-NAC-002110
FORE-NC-000340
CAT II
10
Log on to the Forescout UI.
1. Select Tools >> Option >> HPS Inspection Engine >> SecureConnector.
2. In the Client-Server Connection, set the Minimum Supported TLS Version to TLS version 1.2.
Verify the policy assessment device uses TLS 1.2 to protect the confidentiality of the communication between the endpoint and the NAC.
1. Log on to the Forescout UI.
2. Select Tools >> Option >> HPS Inspection Engine >> SecureConnector.
3. In the Client-Server Connection, check the Minimum Supported TLS Version is set to TLS version 1.2.
If the NAC does not use TLS 1.2, at a minimum, to protect the confidentiality of information passed between the endpoint agent and the NAC for the purposes of client posture assessment, this is a finding.
V-233335
False
FORE-NC-000340
Verify the policy assessment device uses TLS 1.2 to protect the confidentiality of the communication between the endpoint and the NAC.
1. Log on to the Forescout UI.
2. Select Tools >> Option >> HPS Inspection Engine >> SecureConnector.
3. In the Client-Server Connection, check the Minimum Supported TLS Version is set to TLS version 1.2.
If the NAC does not use TLS 1.2, at a minimum, to protect the confidentiality of information passed between the endpoint agent and the NAC for the purposes of client posture assessment, this is a finding.
M
5250