Security

Question regarding COMMON CRITERIA

jkamdar
Communicator

I am trying to deploy Splunk 9.2.1 in air gapped environment. 

 

As I go through STIG list to harden the system, one of the item asks me to turn FIPS and Common Criteria mode on. Turning FIPS mode on is easy but Common Criteria seems to have some other requirements. I am trying to read upon Common Criteria for Splunk but not 100% clear about it and also, not sure if I need it in air gapped environment. 

 

Has someone here gone through enabling it? Can you please provide more info on it? Specially, if not needed, I can present that to my ISSO. 

Thanks in advance.

 

Labels (3)
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @jkamdar ,

as described in the url youshared, there are some infrastructura requirements (OS) and configuration requirement (described in the page).

What is unclear?

I think that it's fully described.

Ciao.

Giuseppe

0 Karma
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Your Voice Matters! Help Us Shape the New Splunk Lantern Experience

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Building Momentum: Splunk Developer Program at .conf25

At Splunk, developers are at the heart of innovation. That’s why this year at .conf25, we officially launched ...