Security

Question regarding COMMON CRITERIA

jkamdar
Communicator

I am trying to deploy Splunk 9.2.1 in air gapped environment. 

 

As I go through STIG list to harden the system, one of the item asks me to turn FIPS and Common Criteria mode on. Turning FIPS mode on is easy but Common Criteria seems to have some other requirements. I am trying to read upon Common Criteria for Splunk but not 100% clear about it and also, not sure if I need it in air gapped environment. 

 

Has someone here gone through enabling it? Can you please provide more info on it? Specially, if not needed, I can present that to my ISSO. 

Thanks in advance.

 

Labels (3)
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @jkamdar ,

as described in the url youshared, there are some infrastructura requirements (OS) and configuration requirement (described in the page).

What is unclear?

I think that it's fully described.

Ciao.

Giuseppe

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Detection Engineering Office Hours: Real-World Troubleshooting & Q&A

[REGISTER HERE] This thread is for the Community Office Hours session on Detection Engineering Office Hours: ...