SV-85981r1_rule
V-71357
SRG-NET-000147-ALG-000095
CAGW-GW-000340
CAT II
10
Open the CA API Gateway - Policy Manager and open each of the Registered Services that require the replay-resistant authentication mechanisms.
Add the "Protect Against Message Replay" Assertion after the "Authenticate User or Group" or "Authenticate Against Identity Provider" Assertion.
Open the CA API Gateway - Policy Manager and open each of the Registered Services that requires the replay-resistant authentication mechanisms.
Verify the "Protect Against Message Replay" Assertion is present after the "Authenticate User or Group" or "Authenticate Against Identity Provider" Assertion.
If the Assertion is not present, this is a finding.
V-71357
False
CAGW-GW-000340
Open the CA API Gateway - Policy Manager and open each of the Registered Services that requires the replay-resistant authentication mechanisms.
Verify the "Protect Against Message Replay" Assertion is present after the "Authenticate User or Group" or "Authenticate Against Identity Provider" Assertion.
If the Assertion is not present, this is a finding.
M
3049