STIGQter STIGQter: STIG Summary: Central Log Server Security Requirements Guide Version: 1 Release: 4 Benchmark Date: 24 Jul 2020:

The Central Log Server, when utilizing PKI-based authentication, must validate certificates by constructing a certification path (which includes status information) to an accepted trust anchor.

DISA Rule

SV-96001r1_rule

Vulnerability Number

V-81287

Group Title

SRG-APP-000175-AU-002630

Rule Version

SRG-APP-000175-AU-002630

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Configure the Central Log Server to validate certificates by constructing a certification path (which includes status information) to an accepted trust anchor.

Check Contents

Examine the configuration.

Verify the Central Log Server is configured to validate certificates by constructing a certification path (which includes status information) to an accepted trust anchor.

If the Central Log Server is not configured to validate certificates by constructing a certification path (which includes status information) to an accepted trust anchor, this is a finding.

Vulnerability Number

V-81287

Documentable

False

Rule Version

SRG-APP-000175-AU-002630

Severity Override Guidance

Examine the configuration.

Verify the Central Log Server is configured to validate certificates by constructing a certification path (which includes status information) to an accepted trust anchor.

If the Central Log Server is not configured to validate certificates by constructing a certification path (which includes status information) to an accepted trust anchor, this is a finding.

Check Content Reference

M

Target Key

3395

Comments