2.1.8 Disable static keys for TLS

Information

Disable support for static keys on TLS sessions terminating on the FortiGate

Prevent TLS sessions terminating on the FortiGate from using static SSL keys

Solution

CLI:

config system global
set ssl-static-key-ciphers disable

end

See Also

https://workbench.cisecurity.org/benchmarks/15284

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6, 800-53|CM-7, CSCv7|9.2

Plugin: FortiGate

Control ID: 72c502f1d60440c8ebb13c58e15d41cb5c98ac9ef34dfe3efaf4cf0d1635bc1f