STIGQter STIGQter: STIG Summary: Adobe ColdFusion Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 01 Jul 2026:

ColdFusion must configure Lightweight Directory Access Protocol (LDAP) for Transport Layer Security (TLS).

DISA Rule

SV-279093r1171053_rule

Vulnerability Number

V-279093

Group Title

SRG-APP-000439-AS-000155

Rule Version

APAS-CF-000875

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Configure LDAP for TLS.

1. From the Admin Console Landing Screen, navigate to Security >> Administrator.

2. Click "Edit LDAP Configuration".

3. Enable the "SSL/TLS" setting.

4. Select "Save".

5. Select "Submit Changes".

Check Contents

Verify LDAP is configured for TLS.

1. From the Admin Console Landing Screen, navigate to Security >> Administrator.

2. Click "Edit LDAP Configuration".

If "SSL/TLS" is not enabled, this is a finding.

Vulnerability Number

V-279093

Documentable

False

Rule Version

APAS-CF-000875

Severity Override Guidance

Verify LDAP is configured for TLS.

1. From the Admin Console Landing Screen, navigate to Security >> Administrator.

2. Click "Edit LDAP Configuration".

If "SSL/TLS" is not enabled, this is a finding.

Check Content Reference

M

Target Key

5724