SOL-11.1-060190 - The operating system must protect the integrity of transmitted information.

Information

Ensuring the integrity of transmitted information requires the operating system take feasible measures to employ transmission layer security. This requirement applies to communications across internal and external networks.

Solution

The Service Management profile is required.

Configure IPsec encrypted tunneling between two systems.

On both systems review the file /etc/inet/ipsecinit.conf. Ensure that connections between hosts are configured properly in this file per the Solaris 11 documentation.

Ensure that the IPsec policy service is online:

Enable the IPsec service:

# svcadm enable svc:/network/ipsec/policy:default

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_11_SPARC_V3R1_STIG.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-8, CAT|II, CCI|CCI-002418, Rule-ID|SV-219984r958908_rule, STIG-ID|SOL-11.1-060190, STIG-Legacy|SV-61013, STIG-Legacy|V-48141, Vuln-ID|V-219984

Plugin: Unix

Control ID: afa576739b450932f2abed7b2d146e94914078781a44e0424e7ccea213a6349c