I am trying to deploy Splunk 9.2.1 in air gapped environment.
As I go through STIG list to harden the system, one of the item asks me to turn FIPS and Common Criteria mode on. Turning FIPS mode on is easy but Common Criteria seems to have some other requirements. I am trying to read upon Common Criteria for Splunk but not 100% clear about it and also, not sure if I need it in air gapped environment.
Has someone here gone through enabling it? Can you please provide more info on it? Specially, if not needed, I can present that to my ISSO.
Thanks in advance.
Hi @jkamdar ,
as described in the url youshared, there are some infrastructura requirements (OS) and configuration requirement (described in the page).
What is unclear?
I think that it's fully described.
Ciao.
Giuseppe