STIGQter STIGQter: STIG Summary: Juniper SRX Services Gateway IDPS Security Technical Implementation Guide Version: 2 Release: 1 Benchmark Date: 24 Jul 2024:

The Juniper Networks SRX Series Gateway IDPS must perform real-time monitoring of files from external sources at network entry/exit points.

DISA Rule

SV-214633r997700_rule

Vulnerability Number

V-214633

Group Title

SRG-NET-000248-IDPS-00206

Rule Version

JUSX-IP-000027

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure a dynamic custom attack group which includes attack objects for malicious code monitoring of files. There are many ways to accomplish this; thus, the following is only an example:

[edit]
security idp dynamic-attack-group Malicious-Activity
set category values [ SHELLCODE VIRUS WORMS SPYWARE TROJAN]

Check Contents

Verify a dynamic custom attack group which includes attack objects for malicious code monitoring of files.

show security idp dynamic-attack-group

If a custom attack group exists containing members which include malicious code attack categories, this is a finding.

Vulnerability Number

V-214633

Documentable

False

Rule Version

JUSX-IP-000027

Severity Override Guidance

Verify a dynamic custom attack group which includes attack objects for malicious code monitoring of files.

show security idp dynamic-attack-group

If a custom attack group exists containing members which include malicious code attack categories, this is a finding.

Check Content Reference

M

Target Key

4006