5.15 OAS - 'SSL Client DN Match - Set tnsnames file to include ssl_server_cert_dn parameter with the DN of the certificate'

Information

This will reduce the possibility of certificate masquerading which can lead to man in the middle attacks

See Also

https://workbench.cisecurity.org/files/580

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CSCv6|3.1

Plugin: Unix

Control ID: c3e62c530378ff1305096564f4860d7b533187fe541364c3e282df57a597c76c