STIGQter STIGQter: STIG Summary: A10 Networks ADC NDM Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 15 Apr 2016:

The A10 Networks ADC must use DoD-approved PKI rather than proprietary or self-signed device certificates.

DISA Rule

SV-82589r1_rule

Vulnerability Number

V-68099

Group Title

SRG-APP-000516-NDM-000344

Rule Version

AADC-NM-000142

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Only import public key certificates from an appropriate certificate policy through an approved service provider.

Use the commands "import ssl-cert" and "import ssl-key" or "slb ssl-load" to import SSL certificates and keys.

Check Contents

Review the device configuration.

This can be checked using the GUI:
Log on to the device and navigate to Config >> System >> Settings >> Web Certificate.

In the certificate pane, view the issuer information.

If each certificate is not issued by an approved service provider, this is a finding.

Vulnerability Number

V-68099

Documentable

False

Rule Version

AADC-NM-000142

Severity Override Guidance

Review the device configuration.

This can be checked using the GUI:
Log on to the device and navigate to Config >> System >> Settings >> Web Certificate.

In the certificate pane, view the issuer information.

If each certificate is not issued by an approved service provider, this is a finding.

Check Content Reference

M

Target Key

2915

Comments