STIGQter STIGQter: STIG Summary: Symantec ProxySG ALG Security Technical Implementation Guide Version: 1 Release: 3 Benchmark Date: 24 Apr 2020:

Symantec ProxySG providing content filtering must be configured to integrate with a system-wide intrusion detection system.

DISA Rule

SV-104287r1_rule

Vulnerability Number

V-94333

Group Title

SRG-NET-000383-ALG-000135

Rule Version

SYMP-AG-000600

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the ProxySG to log to an intrusion detection system.

1. Log on to the Web Management Console.
2. Browse to "Configuration" and click "Access Logging. Check the "Enable Access Logging" option.
3. Click Logs >> Upload Client and ensure that the Client Type parameters are set to send logs to the intrusion detection system.

Check Contents

Verify that the ProxySG is configured to log to an intrusion detection system.

1. Log on to the Web Management Console.
2. Browse to "Configuration" and click "Access Logging. Verify that "Enable Access Logging" is checked.
3. Click Logs >> Upload Client and verify that the Client Type parameters are set to send logs to the intrusion detection system.
4. Click Policy >> Visual Policy Manager >> Launch.

If Symantec ProxySG providing content filtering is not be configured to integrate with a system-wide intrusion detection system, this is a finding.

Vulnerability Number

V-94333

Documentable

False

Rule Version

SYMP-AG-000600

Severity Override Guidance

Verify that the ProxySG is configured to log to an intrusion detection system.

1. Log on to the Web Management Console.
2. Browse to "Configuration" and click "Access Logging. Verify that "Enable Access Logging" is checked.
3. Click Logs >> Upload Client and verify that the Client Type parameters are set to send logs to the intrusion detection system.
4. Click Policy >> Visual Policy Manager >> Launch.

If Symantec ProxySG providing content filtering is not be configured to integrate with a system-wide intrusion detection system, this is a finding.

Check Content Reference

M

Target Key

3515

Comments