AIX7-00-001104 - If LDAP authentication is required on AIX, SSL must be used between LDAP clients and the LDAP servers to protect the integrity of remote access sessions.

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

If LDAP authentication is used, SSL must be used between LDAP clients and the LDAP servers to protect the integrity of remote access sessions.

Solution

Configure the LDAP client on AIX to use the SSL.

Edit /etc/security/ldap/ldap.cfg to have the following line:
useSSL:yes

Restart the client daemon:
# secldapclntd.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_IBM_AIX_7-x_V2R5_STIG.zip

Item Details

References: CAT|II, CCI|CCI-001453, Rule-ID|SV-215214r508663_rule, STIG-ID|AIX7-00-001104, STIG-Legacy|SV-101559, STIG-Legacy|V-91461, Vuln-ID|V-215214

Plugin: Unix

Control ID: b50552d71882293583e53cc5c618c8bbeb22e7fe94fcabb010f15c9285dfeff5