Management Access Policy - HTTPS - SSL Protocols - TLSv1.1

Information

The Secure Socket Layer (SSL) protocol. The protocol can be:
- TLSv1
- TLSv1.1
- TLSv1.2

The default is TLSv1.2.

Solution

Log into the Cisco APIC Web Console:
Navigate to 'Fabric' -> 'Fabric Policies'.

Click 'Fabric Security'.

Expand 'Policies'

Expand 'Pod'

Expand 'Management Access'

For each 'Management Access' policy, in the 'HTTPS' section, ensure 'SSL Protocols - TLSv1.1' is not checked.

Item Details

Audit Name: Tenable Cisco ACI

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-13

Plugin: Cisco_ACI

Control ID: 381102d64331906a639f55d478d12b1721d134064abe6517c14092417280d351