UCF STIG Viewer Logo

The operating system must protect the integrity of transmitted information.


Overview

Finding ID Version Rule ID IA Controls Severity
V-219976 SOL-11.1-060070 SV-219976r947203_rule Medium
Description
Ensuring the integrity of transmitted information requires the operating system take feasible measures to employ transmission layer security. This requirement applies to communications across internal and external networks.
STIG Date
Solaris 11 SPARC Security Technical Implementation Guide 2024-02-02

Details

Check Text ( C-21686r947201_chk )
All remote sessions must be conducted via encrypted services and ports.

Check that SSH is enabled:
# svcs svc:/network/ssh
STATE STIME FMRI
online Nov_03 svc:/network/ssh:default

Ask the operator to document all configured external ports and protocols.

If any unencrypted connections are used, this is a finding.
Fix Text (F-21685r947202_fix)
Configure SSH to be enabled.

# svcadm enable svc:/network/ssh