Free DISA STIG and SRG Library | Vaulted

V-57521

The application server must conform to FICAM-issued profiles.

Finding ID
SRG-APP-000405-AS-000250
Rule ID
SV-71797r2_rule
Severity
Cat II
CCE
(None)
Group Title
SRG-APP-000405-AS-000250
CCI
CCI-002014
Target Key
(None)
Documentable
No
Discussion

Without conforming to FICAM-issued profiles, the information system may not be interoperable with FICAM-authentication protocols, such as SAML 2.0 and OpenID 2.0. This requirement addresses open identity management standards.

Fix Text

Configure the application server to conform to FICAM-issued profiles.

Check Content

Review the application server documentation and configuration to determine if the application server conforms to FICAM-issued profiles. If the application server does not conform to FICAM-issued profiles, this is a finding.