Check: SOL-11.1-060070
Solaris 11 SPARC STIG:
SOL-11.1-060070
(in version v2 r10)
Title
The operating system must protect the integrity of transmitted information. (Cat II impact)
Discussion
Ensuring the integrity of transmitted information requires the operating system take feasible measures to employ transmission layer security. This requirement applies to communications across internal and external networks.
Check Content
All remote sessions must be conducted via encrypted services and ports. Check that SSH is enabled: # svcs svc:/network/ssh STATE STIME FMRI online Nov_03 svc:/network/ssh:default Ask the operator to document all configured external ports and protocols. If any unencrypted connections are used, this is a finding.
Fix Text
Configure SSH to be enabled. # svcadm enable svc:/network/ssh
Additional Identifiers
Rule ID: SV-219976r947203_rule
Vulnerability ID: V-219976
Group Title: SRG-OS-000423
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-001127 |
The information system protects the integrity of transmitted information. |
Controls
Number | Title |
---|---|
No controls are assigned to this check |