SV-79695r1_rule
V-65205
SRG-NET-000062-ALG-000150
WSDP-AG-000018
CAT II
10
The implementer will configure an "SSL Server Profile" to be used for SSL negotiation of a given service.
In the search field, enter "SSL Server Profile" >> Select "SSL Server Profile" from the results >> Click "Add" >> Configure the SSL Server Profile, providing a logical object name and appropriate selection of settings (depending on what type of SSL connection is to be implemented - forward, reverse, mutual) >> Protocols to be enabled include TLS 1.1 and 1.2 (both are enabled by default).
In the search field, enter "SSL Server Profile" >> Select "SSL Server Profile" from the results >> Click the name of the SSL Server Profile object to be inspected >> Confirm that the TLS 1.1 and TLS 1.2 protocol options are checked.
If they are not checked, this is a finding.
V-65205
False
WSDP-AG-000018
In the search field, enter "SSL Server Profile" >> Select "SSL Server Profile" from the results >> Click the name of the SSL Server Profile object to be inspected >> Confirm that the TLS 1.1 and TLS 1.2 protocol options are checked.
If they are not checked, this is a finding.
M
2859