SV-87293r1_rule
V-72661
SRG-APP-000172-DB-000075
VROM-CS-000140
CAT II
10
Configure encryption for transmission of passwords across the network. If the database does not provide encryption for logon events natively, employ encryption at the OS or network level.
At the command line execute the following command:
# sed -i 's/^.*\binternode_encryption:.*$/internode_encryption: all/' /usr/lib/vmware-vcops/user/conf/cassandra/cassandra.yaml
Review configuration settings for encrypting passwords in transit across the network. If passwords are not encrypted, this is a finding.
At the command prompt, execute the following command:
# grep '^\s*internode_encryption:' /usr/lib/vmware-vcops/user/conf/cassandra/cassandra.yaml
If the line below is returned, this is a finding:
internode_encryption: all
V-72661
False
VROM-CS-000140
Review configuration settings for encrypting passwords in transit across the network. If passwords are not encrypted, this is a finding.
At the command prompt, execute the following command:
# grep '^\s*internode_encryption:' /usr/lib/vmware-vcops/user/conf/cassandra/cassandra.yaml
If the line below is returned, this is a finding:
internode_encryption: all
M
3179