STIGQter STIGQter: STIG Summary: MarkLogic Server v9 Security Technical Implementation Guide Version: 3 Release: 2 Benchmark Date: 24 Oct 2024:

MarkLogic Server must be configured in accordance with the security configuration settings based on DoD security configuration and implementation guidance, including STIGs, NSA configuration guides, CTOs, DTMs, and IAVMs.

DISA Rule

SV-220418r961863_rule

Vulnerability Number

V-220418

Group Title

SRG-APP-000516-DB-000363

Rule Version

ML09-00-012400

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

From the list of applicable DoD security configuration and implementation guidance, address the items that the MarkLogic Server configuration does not meet.

Check Contents

Determine the applicable DoD security configuration and implementation guidance for the deployment environment. Asses the MarkLogic Server documentation and configuration in accordance with the applicable guidance.

If MarkLogic is not configured in accordance with security configuration settings, this is a finding.

Vulnerability Number

V-220418

Documentable

False

Rule Version

ML09-00-012400

Severity Override Guidance

Determine the applicable DoD security configuration and implementation guidance for the deployment environment. Asses the MarkLogic Server documentation and configuration in accordance with the applicable guidance.

If MarkLogic is not configured in accordance with security configuration settings, this is a finding.

Check Content Reference

M

Target Key

4064