DTOO422 - In the event a secure Session Initiation Protocol (SIP) connection fails, the connection must be restricted from resorting to the unencrypted HTTP.

Information

Prevents from HTTP being used for SIP connection in case TLS or TCP fail.

Solution

Set the policy value for Computer Configuration -> Administrative Templates -> Skype for Business 2016 -> Microsoft Lync Feature Policies 'Disable HTTP fallback for SIP connection' to 'Enabled'.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_Skype_for_Business_2016_V2R1_STIG.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-23, CAT|II, CCI|CCI-001184, Rule-ID|SV-238107r1043178_rule, STIG-ID|DTOO422, STIG-Legacy|SV-85529, STIG-Legacy|V-70905, Vuln-ID|V-238107

Plugin: Windows

Control ID: 50428f02b133b1ab803361a6b527b377875ba680fe71da45009a1f14660671cd