FireEye - LDAP encryption certificates are verified

Information

If SSL or TLS encryption is used for LDAP communication then the certificate should be verified to provide assurance it was issued by a trusted CA. An unverified certificate could be duplicated and spoofed.

Solution

Edit the configuration and modify this line:\n

ldap ssl cert-verify

Item Details

Audit Name: TNS FireEye

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5(2)(a)

Plugin: FireEye

Control ID: edf88eb687d633b847de152a9e6c4e2ad900b9670eb5fdd3633880246c742cfe