Security

Question regarding COMMON CRITERIA

jkamdar
Communicator

I am trying to deploy Splunk 9.2.1 in air gapped environment. 

 

As I go through STIG list to harden the system, one of the item asks me to turn FIPS and Common Criteria mode on. Turning FIPS mode on is easy but Common Criteria seems to have some other requirements. I am trying to read upon Common Criteria for Splunk but not 100% clear about it and also, not sure if I need it in air gapped environment. 

 

Has someone here gone through enabling it? Can you please provide more info on it? Specially, if not needed, I can present that to my ISSO. 

Thanks in advance.

 

Labels (3)
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @jkamdar ,

as described in the url youshared, there are some infrastructura requirements (OS) and configuration requirement (described in the page).

What is unclear?

I think that it's fully described.

Ciao.

Giuseppe

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Self-Healing Pipeline Is Now Generally Available: AI-Powered CIM Compliance

Maintaining data integrity across security and analytics pipelines is an ongoing challenge. Data ...

[Puzzles] Solve, Learn, Repeat: Family Trees

This puzzle (first published here is based on finding grandparents and grandchildren (inspired by a question ...

Break the Build: Inside the KubeDoom Lounge at .conf26

    You step up to the machine. The pixelated corridors of a certain 1993 FPS load in front of you, EMP Pulse ...