STIGQter STIGQter: STIG Summary: Enterprise Voice, Video, and Messaging Session Management Security Requirements Guide Version: 1 Release: 3 Benchmark Date: 01 Jul 2026:

When using PKI, the Enterprise Voice, Video, and Messaging Session Manager must validate certificates used for Transport Layer Security (TLS) functions by performing RFC 5280-compliant certification path validation.

DISA Rule

SV-260047r949102_rule

Vulnerability Number

V-260047

Group Title

SRG-NET-000580

Rule Version

SRG-NET-000580-VVSM-00010

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the Enterprise Voice, Video, and Messaging Session Manager, when using PKI, to validate certificates using RFC 5280 path validation.

Check Contents

Verify the Enterprise Voice, Video, and Messaging Session Manager, when using PKI, is configured to validate certificates using RFC 5280 path validation.

If the Enterprise Voice, Video, and Messaging Session Manager is not configured to validate certificates using RFC 5280 path validation, this is a finding.

Vulnerability Number

V-260047

Documentable

False

Rule Version

SRG-NET-000580-VVSM-00010

Severity Override Guidance

Verify the Enterprise Voice, Video, and Messaging Session Manager, when using PKI, is configured to validate certificates using RFC 5280 path validation.

If the Enterprise Voice, Video, and Messaging Session Manager is not configured to validate certificates using RFC 5280 path validation, this is a finding.

Check Content Reference

M

Target Key

5587