STIGQter STIGQter: STIG Summary: Arctic Wolf CylanceON-PREM Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 27 May 2025:

CylanceON-PREM must be configured with a DOD issued certificate (or another authorizing official [AO]-approved certificate).

DISA Rule

SV-272639r1113556_rule

Vulnerability Number

V-272639

Group Title

SRG-APP-000391

Rule Version

CYLN-OP-000835

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure Certificate-Based Authentication Settings. Administrator privileges are required.

1. Log in to the admin console.
2. Navigate to CONFIGURATION >> Settings.
3. Find Certificate-Based Authentication.
4. Click "Edit" to open configuration.
5. Turn on the Certificate-Based Authentication setting.
6. Click "Add Certificate".
7. Browse for the file or drag and drop the file to upload it. (Note: The certificate must be a DOD-issued certificate or other AO-approved certificate.)
8. Click "Upload Certificate".
9. Click the green check to save changes.

Check Contents

Verify Certificate-Based Authentication Settings. Administrator privileges are required.

1. Log in to the admin console.
2. Navigate to CONFIGURATION >> Settings.
3. Find Certificate-Based Authentication.
4. Click "Edit" to open configuration.

If Certificate-Based Authentication is not enabled, this is a finding.

If the certificate is not a DOD-issued certificate (or other AO-approved certificate), this is a finding.

Vulnerability Number

V-272639

Documentable

False

Rule Version

CYLN-OP-000835

Severity Override Guidance

Verify Certificate-Based Authentication Settings. Administrator privileges are required.

1. Log in to the admin console.
2. Navigate to CONFIGURATION >> Settings.
3. Find Certificate-Based Authentication.
4. Click "Edit" to open configuration.

If Certificate-Based Authentication is not enabled, this is a finding.

If the certificate is not a DOD-issued certificate (or other AO-approved certificate), this is a finding.

Check Content Reference

M

Target Key

5692