6.1 Setup Client-cert Authentication

Information

Client-cert authentication requires that each client connecting to the server has a certificate used to authenticate. This is generally regarded as strong authentication than a password as it requires the client to have the cert and not just know a password.

Solution

In the Connector element, set the clientAuth parameter to true.

See Also

https://workbench.cisecurity.org/files/266

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5(2)

Plugin: Unix

Control ID: 87cf158ae609a25ff5012d4fb8591fcfce08f4a91620493950496c4a7f036fb7