SharePoint must employ FIPS-validated cryptography to protect unclassified information when such information must be separated from individuals who have the necessary clearances yet lack the necessary access approvals.
An XCCDF Rule
Description
Certain encryption types are no longer considered secure. This setting configures a minimum encryption type for SharePoint. Different versions of the Windows Server OS and versions of SharePoint will have different suites available.
- ID
- SV-223255r961866_rule
- Version
- SP13-00-000100
- Severity
- High
- References
- Updated
Remediation Templates
A Manual Procedure
Configure SharePoint to employ FIPS-validated cryptography to protect unclassified information when such information must be separated from individuals who have the necessary clearances yet lack the necessary access approvals.
Open MMC.
Click “File”, “Add/Remove Snap-in”, and “add Group Policy Object Editor”.