6.1 Setup Client-cert Authentication

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Client-cert authentication requires that each client connecting to the server has a certificate used to authenticate. This is generally regarded as strong authentication than a password as it requires the client to have the cert and not just know a password.

Solution

In the Connector element, set the clientAuth parameter to true.

See Also

https://workbench.cisecurity.org/files/267

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5

Plugin: Unix

Control ID: 943800d5921067d8a66fb9ca149436f088cf23e2ea20ff2a4d94eea91a936ba2