6.5 Ensure that 2048 bit keys are used for signing and encrypting SOAP messages with WS-Security policy

Information

Using keys with at least 2048 bits in length when signing and encrypting SOAP messages using WS-Security policy is more secure.

Using 2048 bit keys for signing and encrypting is more secure than using 1024 bit keys.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Create signing and encryption keys with key size of 2048 bits or higher

See Also

https://workbench.cisecurity.org/benchmarks/7724

Item Details

Category: CONFIGURATION MANAGEMENT, CONTINGENCY PLANNING, PLANNING, PROGRAM MANAGEMENT, SYSTEM AND SERVICES ACQUISITION, SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|CM-7, 800-53|CP-6, 800-53|CP-7, 800-53|PL-8, 800-53|PM-7, 800-53|SA-8, 800-53|SC-7, CSCv7|11.1

Plugin: Unix

Control ID: ddb6010660ed36b20dd93d0a6fc427f52cb7c796c507cde579ecec906f472b50