SV-234217r961620_rule
V-234217
SRG-APP-000435-NDM-000315
FGFW-ND-000290
CAT II
10
Log in to the FortiGate GUI with Super-Admin privilege.
1. Click Policy and Objects.
2. Click IPv4 DoS Policy or IPv6 DoS Policy.
3. Identify the port designated for FortiGate device management.
4. Click +Create New.
5. Define the Incoming Interface, Source Address, Destination Address, and Services.
6. Configure L3 Anomalies, and L4 Anomalies to meet the organization requirement.
7. Click OK.
Log in to the FortiGate GUI with Super-Admin privilege.
1. Click Policy and Objects.
2. Click on IPv4 DoS Policy or IPv6 DoS Policy.
3. Identify the port designated for FortiGate device management.
4. Select the policy and click Edit.
5. Verify appropriate L3 Anomalies and L4 Anomalies are configured to meet the organization requirement.
6. Verify the policy is Enabled.
If appropriate DoS policies are not defined or are disabled, this is a finding.
V-234217
False
FGFW-ND-000290
Log in to the FortiGate GUI with Super-Admin privilege.
1. Click Policy and Objects.
2. Click on IPv4 DoS Policy or IPv6 DoS Policy.
3. Identify the port designated for FortiGate device management.
4. Select the policy and click Edit.
5. Verify appropriate L3 Anomalies and L4 Anomalies are configured to meet the organization requirement.
6. Verify the policy is Enabled.
If appropriate DoS policies are not defined or are disabled, this is a finding.
M
5260