6.2 Ensure SSLEnabled is set to True for Sensitive Connectors(verify SSLEnabled is set to true)

Information

The SSLEnabled setting determines if SSL is enabled for a specific Connector. It is recommended that SSL be utilized for any Connector that sends or receives sensitive information, such as authentication credentials or personal information.

Solution

In server.xml, set the SSLEnabled attribute to true for each Connector that sends or receives sensitive information.

See Also

https://workbench.cisecurity.org/files/266

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-13

Plugin: Unix

Control ID: 871d47e34eef5e2b505d83aa1275bf9aaaadbfee1851ae2a328d9a9f2be010bb