DTOO422 - In the event a secure SIP connection fails, the connection must be restricted from resorting to the unencrypted HTTP.

Information

Prevents from HTTP being used for SIP connection in case TLS or TCP fail.

Solution

Set the policy value for Computer Configuration -> Administrative Templates -> Skype for Business 2016 -> Microsoft Lync Feature Policies 'Disable HTTP fallback for SIP connection' to 'Enabled'.

See Also

http://iasecontent.disa.mil/stigs/zip/U_Microsoft_Skype_for_Business_2016_V1R1_STIG.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-23, CAT|II, CCI|CCI-001184, Rule-ID|SV-85529r1_rule, STIG-ID|DTOO422, Vuln-ID|V-70905

Plugin: Windows

Control ID: 2248356bb71787d17e2670a554d6396b592f0d01f18723913129ac31624f899c