STIGQter STIGQter: STIG Summary: Trend Micro TippingPoint NDM Security Technical Implementation Guide Version: 2 Release: 3 Benchmark Date: 02 Apr 2025:

The TippingPoint SMS must be configured to protect against known types of denial-of-service (DoS) attacks by employing organization-defined security safeguards.

DISA Rule

SV-242252r961620_rule

Vulnerability Number

V-242252

Group Title

SRG-APP-000435-NDM-000315

Rule Version

TIPP-NM-000490

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

In the SMS client, ensure the SMS and TPS have DoS protections enabled.

1. Navigate to Devices and select the SMS hostname.
2. Select Device Configuration >> Select Host IP filters.
3. Add each allowed management subnet.
4. Select Deny as the default action and click OK.
5. Select OK.

Check Contents

In the SMS client, verify the SMS and TPS have DoS protections enabled.

1. Navigate to Devices and select the SMS hostname.
2. Select Device Configuration >> Select Host IP filters.

If no filters exist or the default action is set to "allow", this is a finding.

Vulnerability Number

V-242252

Documentable

False

Rule Version

TIPP-NM-000490

Severity Override Guidance

In the SMS client, verify the SMS and TPS have DoS protections enabled.

1. Navigate to Devices and select the SMS hostname.
2. Select Device Configuration >> Select Host IP filters.

If no filters exist or the default action is set to "allow", this is a finding.

Check Content Reference

M

Target Key

5369