Information
Without confidentiality and integrity protection mechanisms, unauthorized individuals may gain access to sensitive information via a remote access session.
Remote access is access to DoD non-public information systems by an authorized user (or an information system) communicating through an external, non-organization-controlled network. Remote access methods include, for example, dial-up, broadband, and wireless.
Encryption provides a means to secure the remote connection to prevent unauthorized access to the data traversing the remote access connection (e.g., Remote Desktop Protocol [RDP]), thereby providing a degree of confidentiality. The encryption strength of a mechanism is selected based on the security categorization of the information.
Satisfies: SRG-OS-000033-GPOS-00014, SRG-OS-000423-GPOS-00187, SRG-OS-000424-GPOS-00188, SRG-OS-000425-GPOS-00189, SRG-OS-000426-GPOS-00190
Solution
To enable the SSH service, run the following command:
/usr/bin/sudo /bin/launchctl enable system/com.openssh.sshd
The system may need to be restarted for the update to take effect.
Item Details
Category: ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION
References: 800-53|AC-17(2), 800-53|SC-8, 800-53|SC-8(1), 800-53|SC-8(2), CAT|I, CCI|CCI-000068, CCI|CCI-002418, CCI|CCI-002420, CCI|CCI-002421, CCI|CCI-002422, Rule-ID|SV-214809r609363_rule, STIG-ID|AOSX-13-000035, STIG-Legacy|SV-96191, STIG-Legacy|V-81477, Vuln-ID|V-214809
Control ID: f5d5ba1bfb7cae774b9cfd9ecb465decc181639ad9e40062945a12a9de95faed