SHPT-00-000805 - The organization must employ cryptographic mechanisms to prevent unauthorized disclosure of information during transmission unless otherwise protected by alternative physical measures.

Information

Preventing the disclosure of transmitted information requires that applications take measures to using a cryptographic mechanism to protect the information during transmission. This is usually achieved through the use of TLS, SSL, or Internet Protocol Security (IPSec) Virtual Private Network (VPN).

Solution

1. Open IIS Manager.
2. In the Connections pane, expand Sites.
3. Click the Web Application site.
4. In the Actions pane, click Bindings....
5. In the Site Bindings window, click Add.
6. In the Add Site Binding window, change Type to https and select the site's SSL certificate.
7.Click OK and then click Close.

See Also

https://iasecontent.disa.mil/stigs/zip/U_MS_SharePoint_2010_V1R9_STIG.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-8(1), CAT|II, CCI|CCI-002421, Rule-ID|SV-36661r2_rule, STIG-ID|SHPT-00-000805, Vuln-ID|V-28023

Plugin: Windows

Control ID: 3477157a2cca75f1368f2903d3ecf7d71424a68e6947a6d99c3e7511c1d5e73a