1.12 Ensure the operating system accepts PIV credentials

Information

The operating system must accept Personal Identity Verification (PIV) credentials.

The use of PIV credentials facilitates standardization and reduces the risk of unauthorized access.

The DoD has mandated the use of the Common Access Card (CAC) to support identity management and personal authentication for systems covered under Homeland Security Presidential Directive (HSPD) 12, as well as making the CAC a primary component of layered protection for national security systems.

Solution

Configure the operating system to accept PIV credentials.

Install the "opensc" package using the following command:

# dnf install opensc

See Also

https://workbench.cisecurity.org/benchmarks/19886

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-2(12)

Plugin: Unix

Control ID: 074d38615dfab822f641b4fc8e9833f8ea8c95b6123647c4ac317ae766cbb648