Skip to content

The SEL-2740S must be configured to establish trust relationships with parent OTSDN Controller(s).

An XCCDF Rule

Description

<VulnDiscussion>Machine to machine initial trust must be established between the OTSDN controller and the SEL-2740S for authenticating all communications and configuration thereafter. Certificates must be created and safely stored. Backup OTSDN controller trust should also be established and locked down. Any time that these need to be modified the SEL-2740S must be factory default reset and adoption process must be re-executed.</VulnDiscussion><FalsePositives></FalsePositives><FalseNegatives></FalseNegatives><Documentable>false</Documentable><Mitigations></Mitigations><SeverityOverrideGuidance></SeverityOverrideGuidance><PotentialImpacts></PotentialImpacts><ThirdPartyTools></ThirdPartyTools><MitigationControl></MitigationControl><Responsibility></Responsibility><IAControls></IAControls>

ID
SV-102397r1_rule
Severity
Medium
References
Updated



Remediation - Manual Procedure

To configure the SEL-2740S for initial trust and X.509 certificate creation for TLS communications, the device needs to be adopted by OTSDN controller.
Before adopting, create an SEL-2740S configuration node object. 

To adopt an SEL-2740S do the following:
1. Go to the "Topology" page.
2. Select on the SEL-2740S you want to adopt. The "Option" window shows the SEL-2740S "Node Options" pane.