STIGQter STIGQter: STIG Summary: Network Device Management Security Requirements Guide Version: 4 Release: 1 Benchmark Date: 23 Apr 2021:

If the network device uses mandatory access control, the network device must enforce organization-defined mandatory access control policies over all subjects and objects.

DISA Rule

SV-202120r400750_rule

Vulnerability Number

V-202120

Group Title

SRG-APP-000491

Rule Version

SRG-APP-000491-NDM-000316

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the network device to enforce organization-defined mandatory access control policies over all subjects and objects.

Check Contents

Check the network device to determine if organization-defined mandatory access control policies are enforced over all subjects and objects. If it does not use mandatory access control, this is not a finding.

If organization-defined mandatory access control policies are not enforced over all subjects and objects, this is a finding.

Vulnerability Number

V-202120

Documentable

False

Rule Version

SRG-APP-000491-NDM-000316

Severity Override Guidance

Check the network device to determine if organization-defined mandatory access control policies are enforced over all subjects and objects. If it does not use mandatory access control, this is not a finding.

If organization-defined mandatory access control policies are not enforced over all subjects and objects, this is a finding.

Check Content Reference

M

Target Key

2890

Comments