STIGQter STIGQter: STIG Summary: Ivanti Sentry 9.x NDM Security Technical Implementation Guide Version: 3 Release: 1 Benchmark Date: 24 Oct 2024:

Sentry must limit the number of concurrent sessions for the CLISH interface to an organization-defined number for each administrator account and/or administrator account type.

DISA Rule

SV-250982r1028209_rule

Vulnerability Number

V-250982

Group Title

SRG-APP-000001-NDM-000200

Rule Version

MOIS-ND-000020

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the CLISH with a max number of SSH sessions.

1. Log in to the Sentry System Manager.
2. Go to Settings >> CLI.
3. Configure a Max SSH Sessions integer (1-10) based on security guidance.
4. Click "Apply" and "Save" in the top right corner.

Check Contents

Verify that the CLISH has a max number of SSH sessions enabled.

1. Log in to the Sentry System Manager.
2. Go to Settings >> CLI.
3. Verify a Max SSH Sessions integer (1-10) is set based on security guidance.

If the Max SSH Sessions integer is not set correctly, this is a finding.

Vulnerability Number

V-250982

Documentable

False

Rule Version

MOIS-ND-000020

Severity Override Guidance

Verify that the CLISH has a max number of SSH sessions enabled.

1. Log in to the Sentry System Manager.
2. Go to Settings >> CLI.
3. Verify a Max SSH Sessions integer (1-10) is set based on security guidance.

If the Max SSH Sessions integer is not set correctly, this is a finding.

Check Content Reference

M

Target Key

5438