SV-242643r714239_rule
V-242643
SRG-APP-000395-NDM-000310
CSCO-NM-000380
CAT II
10
Enable FIPS Mode in Cisco ISE to ensure DRBG is used for all RNG functions.
1. Choose Administration >> System >> Settings >> FIPS Mode.
2. Choose the "Enabled" option from the FIPS Mode drop-down list.
3. Click "Save" and restart the node.
Navigate to Administration >> System >> Settings >> FIPS Mode.
Verify FIPS Mode is enabled.
If the Cisco ISE does not generate unique session identifiers using a FIPS 140-2 approved RNG, this is a finding.
V-242643
False
CSCO-NM-000380
Navigate to Administration >> System >> Settings >> FIPS Mode.
Verify FIPS Mode is enabled.
If the Cisco ISE does not generate unique session identifiers using a FIPS 140-2 approved RNG, this is a finding.
M
5384