SV-93731r1_rule
V-79025
SRG-APP-000516-AS-000237
BEMS-00-013600
CAT II
10
Replace the auto-generated BEMS SSL certificate with a DoD certificate as follows:
1. Generate a CSR request and obtain a certificate from the DoD CA.
2. Import the certificate into the BEMS keystore.
3. Update the certificate passwords in BEMS.
Verify a DoD SSL certificate has been installed on BEMS as follows:
1. Open the browser.
2. Browse to the BEMS dashboard.
3. Select SSL certificate and view the certificate.
4. Verify the certificate is a DoD certificate (has the DoD CA listed in the certificate).
If the SSL certificate installed on BEMS is not a DoD certificate, this is a finding.
V-79025
False
BEMS-00-013600
Verify a DoD SSL certificate has been installed on BEMS as follows:
1. Open the browser.
2. Browse to the BEMS dashboard.
3. Select SSL certificate and view the certificate.
4. Verify the certificate is a DoD certificate (has the DoD CA listed in the certificate).
If the SSL certificate installed on BEMS is not a DoD certificate, this is a finding.
M
3259