SV-204983r831360_rule
V-204983
SRG-NET-000319
SRG-NET-000319-ALG-000015
CAT II
10
If the ALG performs content filtering as part of the traffic management functionality, configure the ALG to detect code injection attacks from being launched against data storage objects, including, at a minimum, databases, database records, queries, and fields.
If the ALG does not perform content filtering as part of the traffic management functions, this is not applicable.
Verify the ALG detects code injection attacks from being launched against data storage objects, including, at a minimum, databases, database records, queries, and fields.
If the ALG does not detect code injection attacks from being launched against data storage objects, including, at a minimum, databases, database records, queries, and fields, this is a finding.
V-204983
False
SRG-NET-000319-ALG-000015
If the ALG does not perform content filtering as part of the traffic management functions, this is not applicable.
Verify the ALG detects code injection attacks from being launched against data storage objects, including, at a minimum, databases, database records, queries, and fields.
If the ALG does not detect code injection attacks from being launched against data storage objects, including, at a minimum, databases, database records, queries, and fields, this is a finding.
M
2904