Rule version BCAS-ND-002010 · STIG v1 · 2026-09-16
Nonlocal maintenance and diagnostic activities are conducted by individuals who communicate through either an external or internal network. Communications paths can be logically separated using encryption.
Verify ICAP secure is enabled on port 11344 and HTTPS administration is enabled on port 8082 with the following steps:
1. Log on to the CAS Web Management Console with an administrative account. 2. Navigate to Settings >> ICAP. 3. Locate "Service" and ensure "secure" is selected and configured for port "11344". 4. Navigate to Settings >> Web Management. 5. Locate "Web Server" and ensure "Enable HTTPS Administration" is selected and configured for port "8082".
If "secure" is not selected for ICAP, if port "11344" is not configured, or if "Enable HTTPS Administration" is not selected and configured for port "8082", this is a finding.
Configure ICAP secure on port 11344 and HTTPS administration on port 8082 with the following steps:
1. Log on to the CAS Web Management Console with an administrative account. 2. Navigate to Settings >> ICAP. 3. Locate "Service", select "secure", and enter "11344" for the port value. 4. Click "Save Changes". 5. Navigate to Settings >> Web Management. 6. Locate "Web Server", select "Enable HTTPS Administration", and enter "8082" for the port value. 7. Click "Save Changes".