STIGQter STIGQter: STIG Summary: Trend Micro TippingPoint IDPS Security Technical Implementation Guide Version: 2 Release: 2 Benchmark Date: 24 Oct 2024:

The SMS must be configured to remove or disable nonessential capabilities on SMS and TPS, which are not required for operation or not related to IDPS functionality.

DISA Rule

SV-242188r1028381_rule

Vulnerability Number

V-242188

Group Title

SRG-NET-000131-IDPS-00011

Rule Version

TIPP-IP-000230

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

1. In the Trend Micro SMS interface, go to the "Devices" tab.
2. Select the device to be modified.
3. Click "Device Configuration" and "Services".
4. Uncheck enabled for HTTPS and TAXII.
5. Under SSH ensure "SSH Login Grace Time" is set to 60 and "SSH Max Authentication Attempts" is set to "3".
6. Click "OK".

Check Contents

1. In the Trend Micro SMS interface, go to the "Devices" tab.
2. Select the Device to be modified.
3. Click "Device Configuration" and "Services".

If HTTPS or TAXII are enabled, this is a finding.

Vulnerability Number

V-242188

Documentable

False

Rule Version

TIPP-IP-000230

Severity Override Guidance

1. In the Trend Micro SMS interface, go to the "Devices" tab.
2. Select the Device to be modified.
3. Click "Device Configuration" and "Services".

If HTTPS or TAXII are enabled, this is a finding.

Check Content Reference

M

Target Key

5367