Skip to content

SharePoint must employ FIPS-validated cryptography to protect unclassified information when such information must be separated from individuals who have the necessary clearances yet lack the necessary access approvals.

An XCCDF Rule

Description

Certain encryption types are no longer considered secure. This setting configures a minimum encryption type for SharePoint. Different versions of the Windows Server OS and versions of SharePoint will have different suites available.

ID
SV-223255r961866_rule
Version
SP13-00-000100
Severity
High
References
Updated

Remediation Templates

A Manual Procedure

Configure SharePoint to employ FIPS-validated cryptography to protect unclassified information when such information must be separated from individuals who have the necessary clearances yet lack the necessary access approvals.

Open MMC.

Click “File”, “Add/Remove Snap-in”, and “add Group Policy Object Editor”.