Details
The DoD root certificates will ensure that the trust chain is established for server certificates issued from the DoD Certificate Authority (CA).
NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.
Solution
Install the DoD root certificates.
On Windows, import certificates from the operating system by using Certificates >> Import Enterprise Roots (Certificates) via policy or Group Policy Object (GPO).
Supportive Information
The following resource is also helpful.
This security hardening control applies to the following category of controls within NIST 800-53: Identification and Authentication.This control applies to the following type of system Unix.
References
- 800-53|IA-5(2)(a)
- CAT|II
- CCI|CCI-000185
- Rule-ID|SV-251560r807152_rule
- STIG-ID|FFOX-00-000016
- Vuln-ID|V-251560