The operating system must maintain the confidentiality of information during aggregation, packaging, and transformation in preparation for transmission.

Severity
Group ID
Group Title
Version
Rule ID
Date
STIG Version
mediumV-219981SRG-OS-000425SOL-11.1-060120SV-219981r958912_rule2024-11-253
Description
Ensuring that transmitted information remains confidential during aggregation, packaging, and transformation requires the operating system take feasible measures to employ transmission layer security. This requirement applies to communications across internal and external networks.
ℹ️ Check
All remote sessions must be conducted via encrypted services and ports. Ask the operator to document all configured external ports and protocols. If any unencrypted connections are used, this is a finding.
✔️ Fix
All remote sessions must be conducted via SSH and IPsec. Ensure that SSH and IPsec are the only protocols used.