3.3 - LDAP Server SSL should be enabled

Information

Set the 'SSLEnabled' option to [enabled] for the appropriate LDAP server connections.

If SSL is not enabled the data will not be authenticated and encrypted, allowing a malicious user to more easily gain access to the system.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

To enable SSL authentication on the system perform the below mentioned steps
1. Login to the Administration Console.
2. In the Change Center, click Lock & Edit.
3. In the left pane, select the Domain name.
4. Select Security Realms > name of the active realm.
5. Select Providers > Authentication.
6. For each of the LDAP authentication providers, follow steps 7-10.
7. Select the Configuration tab.
8. Select the Provider Specific tab.
9. Check the 'SSLEnabled' box.
10. Click Save.
11. To activate these changes, in the Change Center of the Administration Console, click Activate Changes.

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-13

Plugin: Unix

Control ID: c04a711183bafd81aaca2ca8288ecec9e7ea58e285c8dbc1f44ed4f33943a70b