The operating system must protect the confidentiality of transmitted information.

Overview

Finding IDVersionRule IDIA ControlsSeverity
V-220007SOL-11.1-060100SV-220007r958908_ruleCCI-002418medium
Description
Ensuring the confidentiality of transmitted information requires the operating system take feasible measures to employ transmission layer security. This requirement applies to communications across internal and external networks.
STIGDate
Solaris 11 X86 Security Technical Implementation Guide2025-05-05

Details

Check Text (C-220007r958908_chk)

All remote sessions must be conducted via encrypted services and ports. Ask the operator to document all configured external ports and protocols. If any unencrypted connections are used, this is a finding.

Fix Text (F-21716r372893_fix)

All remote sessions must be conducted via SSH and IPsec. Ensure that SSH and IPsec are the only protocols used.