SV-96061r1_rule
V-81347
SRG-APP-000172-AS-000121
WBSP-AS-001200
CAT I
10
In the administrative console, click Security >> Global security.
Under User account repository, click the "Available realm definitions" drop-down list.
Select Standalone LDAP registry.
Click "Configure".
Click "SSL enabled".
Click "OK".
On Global security panel, click "Set as current".
Click "Apply".
Click "Save".
To ensure an error-free operation for this step, you need to first extract to a file the Signer certificate of the LDAP and send that file to the WebSphere Application Server machine. You can then add the certificate to the trust store being defined for the LDAP. In this way, you are assured that the remaining actions for this step will be successful.
In the administrative console, click Security >> Global security.
Under "User account repository", click "Configure" for the "Standalone LDAP registry", on "Standalone LDAP registry" panel.
If the "SSL" flag is not enabled, this is a finding.
V-81347
False
WBSP-AS-001200
In the administrative console, click Security >> Global security.
Under "User account repository", click "Configure" for the "Standalone LDAP registry", on "Standalone LDAP registry" panel.
If the "SSL" flag is not enabled, this is a finding.
M
3399