1.172 WN16-DC-000280

Information

Domain controllers must have a PKI server certificate.

GROUP ID: V-224991
RULE ID: SV-224991r958448

Domain controllers are part of the chain of trust for PKI authentications. Without the appropriate certificate, the authenticity of the domain controller cannot be verified. Domain controllers must have a server certificate to establish authenticity as part of PKI authentications in the domain.

Solution

Obtain a server certificate for the domain controller.

See Also

https://workbench.cisecurity.org/benchmarks/23093

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-23(5)

Plugin: Windows

Control ID: 2e722ca7f3770d5eddb193400d1ac8e943358c70950c6bac6765322b85479db8