The DOD Root Certificate is not installed.

From Mozilla Firefox Security Technical Implementation Guide

Part of DTBG010-DoD Root Certificate is not installed

SV-33373r4_rule The DOD Root Certificate is not installed.

Vulnerability discussion

The DOD root certificate will ensure that the trust chain is established for server certificate issued from the DOD CA.

Check content

Navigate to Tools >> Options >> Advanced >> Certificates tab >> View Certificates button. On the Certificate Manager window, select the "Authorities" tab. Scroll through the Certificate Name list to the U.S. Government heading. Look for the entry for the DoD Root CA 2. If there is an entry for the DoD Root CA 2, select the entry and then the "View" button, and ensure the publishing organization is "US Government." If there is no entry for the DoD Root CA 2, this is a finding. NOTE: In a Windows environment, use of policy setting "security.enterprise_roots.enabled=true" will point Firefox to the Windows CA and is allowed.

Fix text

Install the DOD CA 2 root certificate.

Pro Tips

Lavender hyperlinks in small type off to the right (of CSS class id, if you view the page source) point to globally unique URIs for each document and item. Copy the link location and paste anywhere you need to talk unambiguously about these things.

You can obtain data about documents and items in other formats. Simply provide an HTTP header Accept: text/turtle or Accept: application/rdf+xml.

Powered by sagemincer