SharePoint must employ NSA-approved cryptography to protect classified information.
An XCCDF Rule
Description
<VulnDiscussion>Certain encryption types are no longer considered secure. This setting configures a minimum encryption type for SharePoint. Different versions of the Windows Server OS and versions of SharePoint will have different suites available.</VulnDiscussion><FalsePositives></FalsePositives><FalseNegatives></FalseNegatives><Documentable>false</Documentable><Mitigations></Mitigations><SeverityOverrideGuidance></SeverityOverrideGuidance><PotentialImpacts></PotentialImpacts><ThirdPartyTools></ThirdPartyTools><MitigationControl></MitigationControl><Responsibility></Responsibility><IAControls></IAControls>
- ID
- SV-223254r821362_rule
- Severity
- High
- References
- Updated
Remediation - Manual Procedure
Configure SharePoint to employ NSA-approved cryptography to protect classified information.
Open MMC.
Click “File”, “Add/Remove Snap-in”, and “add Group Policy Object Editor”.