STIGQter STIGQter: STIG Summary: Firewall Security Requirements Guide Version: 2 Release: 1 Benchmark Date: 22 Jan 2021:

The firewall must be configured to inspect all inbound and outbound traffic at the application layer.

DISA Rule

SV-223011r604133_rule

Vulnerability Number

V-223011

Group Title

SRG-NET-000364

Rule Version

SRG-NET-000364-FW-000040

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the firewall to inspect all inbound and outbound traffic at the application layer.

Check Contents

Review the firewall configuration to verify that inspection for applications deployed within the network is being performed on all interfaces.
If the firewall is not configured to inspect all inbound and outbound traffic at the application layer, this is a finding.

Vulnerability Number

V-223011

Documentable

False

Rule Version

SRG-NET-000364-FW-000040

Severity Override Guidance

Review the firewall configuration to verify that inspection for applications deployed within the network is being performed on all interfaces.
If the firewall is not configured to inspect all inbound and outbound traffic at the application layer, this is a finding.

Check Content Reference

M

Target Key

2912

Comments