6.1 Setup Client-cert Authentication

Information

Client-cert authentication requires that each client connecting to the server has a certificate used to authenticate. This is generally regarded as strong authentication than a password as it requires the client to have the cert and not just know a password.

Solution

In the Connector element, set the clientAuth parameter to true.

See Also

https://workbench.cisecurity.org/files/266

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5(2)

Plugin: Unix

Control ID: be522f21de74eced3b0a889c685edf9269b3a5efa60ab239c2ddc81ce76ea870