STIGQter STIGQter: STIG Summary: Forescout Network Device Management Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 20 Nov 2020:

Forescout must retain the Standard Mandatory DoD Notice and Consent Banner on the screen until the administrator acknowledges the usage conditions and takes explicit actions to log on for further access.

DISA Rule

SV-230935r615886_rule

Vulnerability Number

V-230935

Group Title

SRG-APP-000069-NDM-000216

Rule Version

FORE-NM-000060

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

Log on to the Forescout Administrator UI.

1. Select Tools >> Options >> CounterACT User Profiles >> Password and Sessions.
2. Select the "Login" tab and check the "Display this Notice and Consent Message after login" option.
3. Select the "Before login, prompt user to accept these Terms and Conditions".
4. Select "Apply" to save the settings.

Check Contents

Verify Forescout retains the Standard Mandatory DoD-approved Notice and Consent Banner on the screen until users acknowledge the usage conditions and takes explicit actions to log on for further access.

Attempt to log on to the Forescout device as a system administrator using the web management tool.

If Forescout does not retain the Standard Mandatory DoD-approved Notice and Consent Banner on the screen until users acknowledge the usage conditions and take explicit actions to log on for further access, this is a finding.

Vulnerability Number

V-230935

Documentable

False

Rule Version

FORE-NM-000060

Severity Override Guidance

Verify Forescout retains the Standard Mandatory DoD-approved Notice and Consent Banner on the screen until users acknowledge the usage conditions and takes explicit actions to log on for further access.

Attempt to log on to the Forescout device as a system administrator using the web management tool.

If Forescout does not retain the Standard Mandatory DoD-approved Notice and Consent Banner on the screen until users acknowledge the usage conditions and take explicit actions to log on for further access, this is a finding.

Check Content Reference

M

Target Key

5245

Comments