STIGQter STIGQter: STIG Summary: Intrusion Detection and Prevention Systems Security Requirements Guide Version: 3 Release: 4 Benchmark Date: 28 Oct 2025:

The IPS must block any prohibited mobile code at the enclave boundary when it is detected.

DISA Rule

SV-206883r1137731_rule

Vulnerability Number

V-206883

Group Title

SRG-NET-000229

Rule Version

SRG-NET-000229-IDPS-00163

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the IPS to block any prohibited mobile code at the enclave boundary when it is detected.

Check Contents

If the device being reviewed is an IDS, this is not applicable.

Verify the IPS blocks any prohibited mobile code at the enclave boundary when it is detected.

If the IPS does not block any prohibited mobile code at the enclave boundary when it is detected, this is a finding.

Vulnerability Number

V-206883

Documentable

False

Rule Version

SRG-NET-000229-IDPS-00163

Severity Override Guidance

If the device being reviewed is an IDS, this is not applicable.

Verify the IPS blocks any prohibited mobile code at the enclave boundary when it is detected.

If the IPS does not block any prohibited mobile code at the enclave boundary when it is detected, this is a finding.

Check Content Reference

M

Target Key

2918