Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-23827 | GEN005495 | SV-28763r1_rule | DCNR-1 | Medium |
Description |
---|
Cryptographic modules used by the system must be validated by the NIST CVMP as compliant with FIPS 140-2. Cryptography performed by modules not validated is viewed by NIST as providing no protection for the data. |
STIG | Date |
---|---|
UNIX SRG | 2013-03-26 |
Check Text ( C-29152r1_chk ) |
---|
Determine if the SSH client uses a FIPS 140-2 validated cryptographic module (operating in FIPS mode). If it does not, this is a finding. |
Fix Text (F-26163r1_fix) |
---|
Configure the SSH client to use a FIPS 140-2 validated cryptographic module (operating in FIPS mode). |