SV-77321r1_rule
V-62831
SRG-NET-000164-ALG-000100
RICX-AG-000098
CAT II
10
Configure RiOS to validate certificates used for TLS functions by performing certificate path validation.
Navigate to the device Management Console.
Navigate to Configure >> Optimization >> CRL Management.
Set the checkbox for "Enable Automatic CRL Polling For CAs".
Set the checkbox for "Enable Automatic CRL Polling For Peering CAs".
Click "Apply".
Navigate to the top of the web page and click "Save".
Verify that RiOS is configured to validate certificates used for TLS functions by performing certificate path validation.
Navigate to the device Management Console.
Navigate to Configure >> Optimization >> CRL Management.
Verify that "Enable Automatic CRL Polling For CAs" and "Enable Automatic CRL Polling For Peering CAs" is checked.
If "Enable Automatic CRL Polling For CAs" and/or "Enable Automatic CRL Polling For Peering CAs" is not set, this is a finding.
V-62831
False
RICX-AG-000098
Verify that RiOS is configured to validate certificates used for TLS functions by performing certificate path validation.
Navigate to the device Management Console.
Navigate to Configure >> Optimization >> CRL Management.
Verify that "Enable Automatic CRL Polling For CAs" and "Enable Automatic CRL Polling For Peering CAs" is checked.
If "Enable Automatic CRL Polling For CAs" and/or "Enable Automatic CRL Polling For Peering CAs" is not set, this is a finding.
M
2929