Information
Verifies for digitally signed images that the running image is from a trusted source
Rationale:
The software image being a code can be vulnerable to many attacks such as malicious code injection in the software, the modification of the code installed in the ROM. In order to ensure that the image running is from a trusted source, the image is digitally signed and its certificate should be verified.
NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.
Solution
Step 1: Correct the errors on the hardware and software
Step 2: Run the audit procedure until the system is compliant
Step 3: Implement secure delivery of hardware and harden the software distribution server