STIGQter STIGQter: STIG Summary: Nutanix Acropolis Application Server Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 26 Jan 2026:

Nutanix AOS must be configured to use DOD PKI-issued certificates.

DISA Rule

SV-279445r1192540_rule

Vulnerability Number

V-279445

Group Title

SRG-APP-000427-AS-000264

Rule Version

NXAC-AS-000045

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the Nutanix VM application server to use a trusted DOD root CA-signed certificate.

1. Log in to Prism Element.
2. Click the gear icon in the upper-right corner.
3. Navigate to the SSL Certificate section.
4. Click "Relace Certificate".
5. Select "Import Key and Certificate".
6. Select the Private Key Type and upload the private key, public certificate, and the CA certificate or chain.
7. Select "Import Files".

Check Contents

Confirm the Nutanix VM application server is configured with a trusted DOD root CA-signed certificate.

1. Log in to Prism Element.
2. Click the gear icon in the upper-right corner.
3. Navigate to the SSL Certificate section.
4. Ensure the approved CA signed certificate is installed.

If the certificate used is not from an approved DOD-approved CA, this is a finding.

Vulnerability Number

V-279445

Documentable

False

Rule Version

NXAC-AS-000045

Severity Override Guidance

Confirm the Nutanix VM application server is configured with a trusted DOD root CA-signed certificate.

1. Log in to Prism Element.
2. Click the gear icon in the upper-right corner.
3. Navigate to the SSL Certificate section.
4. Ensure the approved CA signed certificate is installed.

If the certificate used is not from an approved DOD-approved CA, this is a finding.

Check Content Reference

M

Target Key

5729