SV-237048r639591_rule
V-237048
SRG-NET-000355-ALG-000117
AADC-AG-000098
CAT II
10
If the A10 Networks ADC is used for TLS/SSL decryption for application traffic, import the root and intermediate CA certificates. The certificates can be imported onto the device using FTP or SCP.
If the A10 Networks ADC is not used for TLS/SSL decryption for application traffic, this is not applicable.
If the A10 Networks ADC is used for TLS/SSL decryption for application traffic, verify the A10 Networks ADC only accepts end entity certificates issued by DoD PKI or DoD-approved PKI CAs for the establishment of protected sessions.
If the A10 Networks ADC accepts non-DoD-approved PKI end entity certificates, this is a finding.
V-237048
False
AADC-AG-000098
If the A10 Networks ADC is not used for TLS/SSL decryption for application traffic, this is not applicable.
If the A10 Networks ADC is used for TLS/SSL decryption for application traffic, verify the A10 Networks ADC only accepts end entity certificates issued by DoD PKI or DoD-approved PKI CAs for the establishment of protected sessions.
If the A10 Networks ADC accepts non-DoD-approved PKI end entity certificates, this is a finding.
M
5285