STIGQter STIGQter: STIG Summary: McAfee Application Control 8.x Security Technical Implementation Guide Version: 2 Release: 1 Benchmark Date: 23 Oct 2020:

The Solidcore client Command Line Interface (CLI) Access Password must be changed from the default.

DISA Rule

SV-213328r506897_rule

Vulnerability Number

V-213328

Group Title

SRG-APP-000386

Rule Version

MCAC-TE-000102

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Change the CLI password with one other than the default, using administrative password complexity.

From the ePO server console System Tree, select "My Organization".

In the "Configuration (Client)" category, click on the Organization's specific Configuration (Client) McAfee Default policy.

In the "CLI" tab, type a password other than the default, ensuring to conform to password complexity.

Confirm the password.

Click "Save".

Check Contents

This is a manual procedure to verify the CLI Access Password has been changed from its default setting by the ePO administrator.

Ask the ePO admin, "Has the CLI Access Password been changed from its default setting?"

If the default password is being used, this is a finding.

Note: The password does not need to be divulged during the review. An interview question of the SA to validate that it is not the default is sufficient.

Vulnerability Number

V-213328

Documentable

False

Rule Version

MCAC-TE-000102

Severity Override Guidance

This is a manual procedure to verify the CLI Access Password has been changed from its default setting by the ePO administrator.

Ask the ePO admin, "Has the CLI Access Password been changed from its default setting?"

If the default password is being used, this is a finding.

Note: The password does not need to be divulged during the review. An interview question of the SA to validate that it is not the default is sufficient.

Check Content Reference

M

Target Key

3982

Comments