STIGQter STIGQter: STIG Summary: Cisco ISE NAC Security Technical Implementation Guide Version: 2 Release: 4 Benchmark Date: 01 Jul 2026:

The Cisco ISE must perform continuous detection and tracking of endpoint devices attached to the network. This is required for compliance with C2C Step 1.

DISA Rule

SV-242599r1212025_rule

Vulnerability Number

V-242599

Group Title

SRG-NET-000512-NAC-002310

Rule Version

CSCO-NC-000250

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

If required by the NAC SSP, configure the posture settings to enable the Continuous Monitoring Interval.

From the Web Admin portal:
1. Choose Work Centers >> Posture >> Settings >> Posture General Settings.
2. Check "Continuous Monitoring Interval" and define an interval to enable continuous monitoring.
3. Choose "Save".

Note: For versions after version 3.1, it may be necessary to navigate to Administration >> System >> Settings >> Posture >> General Settings to access this setting.

Check Contents

If DOD is not at C2C Step 1 or higher, this is not a finding.

If not required by the NAC SSP, this is not a finding.

Review the posture settings to verify the Continuous Monitoring Interval is enabled and a value is configured.

From the Web Admin portal:
1. Choose Work Centers >> Posture >> Settings >> Posture General Settings.
2. Verify that "Continuous Monitoring Interval" is enabled and an interval is configured.

Note: For versions after version 3.1, it may be necessary to navigate to Administration >> System >> Settings >> Posture >> General Settings to access this setting.

If "Continuous Monitoring Interval" is not enabled with an interval defined, this is a finding.

Vulnerability Number

V-242599

Documentable

False

Rule Version

CSCO-NC-000250

Severity Override Guidance

If DOD is not at C2C Step 1 or higher, this is not a finding.

If not required by the NAC SSP, this is not a finding.

Review the posture settings to verify the Continuous Monitoring Interval is enabled and a value is configured.

From the Web Admin portal:
1. Choose Work Centers >> Posture >> Settings >> Posture General Settings.
2. Verify that "Continuous Monitoring Interval" is enabled and an interval is configured.

Note: For versions after version 3.1, it may be necessary to navigate to Administration >> System >> Settings >> Posture >> General Settings to access this setting.

If "Continuous Monitoring Interval" is not enabled with an interval defined, this is a finding.

Check Content Reference

M

Target Key

5383