STIGQter STIGQter: STIG Summary: Trend Micro TippingPoint NDM Security Technical Implementation Guide Version: 2 Release: 3 Benchmark Date: 02 Apr 2025:

The TippingPoint SMS, TPS, and SMS client must display the Standard Mandatory DoD Notice and Consent Banner before granting access to the device.

DISA Rule

SV-242235r960843_rule

Vulnerability Number

V-242235

Group Title

SRG-APP-000068-NDM-000215

Rule Version

TIPP-NM-000050

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

Configure banner message to display on the SMS client toolbar or when a user attempts to log in to the following interfaces: SMS client, SMS web management console, CLI, or remote SSH client.

1. Select Edit >> Preferences >> Banner Message.
2. Check "Enable Banner Message".
3. Add the exactly worded and formatted DoD-approved banner as presented in accordance with DTM-08-060.
4. Check all the boxes under the banner to display on check display on client toolbar, client login, web login, console/CLI, and remote/SSH login.

To enable the TPS login banner:
1. Select Devices >> All Devices >> <TPS Device hostname>.
2. Select Device Configuration >> Login Banner >> Enable Banner Message.
3. Add the exactly worded and formatted DoD-approved banner as presented in accordance with DTM-08-060.
4. Click OK.

Check Contents

Determine if the network device is configured to present a DoD-approved banner that is formatted in accordance with DTM-08-060.

Verify the SMS client has a login banner configured by viewing the SMS client toolbar, client login, web login, console/CLI, or remote/SSH login.

Verify the TPS login banner is enabled:
1. Click Devices, All Devices, and the TPS Device hostname.
2. Click Device Configuration.
3. Click Login Banner.

If the TippingPoint SMS, TPS, and SMS client does not display the Standard Mandatory DoD Notice and Consent Banner before granting access to the device, this is a finding.

Vulnerability Number

V-242235

Documentable

False

Rule Version

TIPP-NM-000050

Severity Override Guidance

Determine if the network device is configured to present a DoD-approved banner that is formatted in accordance with DTM-08-060.

Verify the SMS client has a login banner configured by viewing the SMS client toolbar, client login, web login, console/CLI, or remote/SSH login.

Verify the TPS login banner is enabled:
1. Click Devices, All Devices, and the TPS Device hostname.
2. Click Device Configuration.
3. Click Login Banner.

If the TippingPoint SMS, TPS, and SMS client does not display the Standard Mandatory DoD Notice and Consent Banner before granting access to the device, this is a finding.

Check Content Reference

M

Target Key

5369