SV-54323r3_rule
V-41746
SRG-APP-000179-WSR-000111
SRG-APP-000179-WSR-000111
CAT II
10
Configure the web server to utilize FIPS 140-2 approved encryption modules when authenticating users and processes.
Review web server documentation and deployed configuration to determine whether the encryption modules utilized for authentication are FIPS 140-2 compliant. Reference the following NIST site to identify validated encryption modules: http://csrc.nist.gov/groups/STM/cmvp/documents/140-1/140val-all.htm
If the encryption modules used for authentication are not FIPS 140-2 validated, this is a finding.
V-41746
False
SRG-APP-000179-WSR-000111
Review web server documentation and deployed configuration to determine whether the encryption modules utilized for authentication are FIPS 140-2 compliant. Reference the following NIST site to identify validated encryption modules: http://csrc.nist.gov/groups/STM/cmvp/documents/140-1/140val-all.htm
If the encryption modules used for authentication are not FIPS 140-2 validated, this is a finding.
M
2557