SV-206430r965407_rule
V-206430
SRG-APP-000427
SRG-APP-000427-WSR-000186
CAT II
10
Configure the web server to only allow the use of DOD PKI-established CAs for the session establishment. Configure validation for both the user and machine certificates.
If the web server does not provide PKI-based user authentication intermediary services, this is not applicable.
Verify the web server only allows the use of DOD PKI-established CA for verification when establishing sessions.
Verify both user and machine certificates are being validated when establishing sessions.
If the web server does not validate user and machine certificates using DOD PKI-established CAs, this is a finding.
V-206430
False
SRG-APP-000427-WSR-000186
If the web server does not provide PKI-based user authentication intermediary services, this is not applicable.
Verify the web server only allows the use of DOD PKI-established CA for verification when establishing sessions.
Verify both user and machine certificates are being validated when establishing sessions.
If the web server does not validate user and machine certificates using DOD PKI-established CAs, this is a finding.
M
2910