STIGQter STIGQter: STIG Summary: Ivanti Sentry 9.x NDM Security Technical Implementation Guide Version: 3 Release: 1 Benchmark Date: 24 Oct 2024:

Sentry must be configured to limit the network access of the Sentry System Manager Portal behind the corporate firewall and whitelist source IP range.

DISA Rule

SV-250983r1028210_rule

Vulnerability Number

V-250983

Group Title

SRG-APP-000001-NDM-000200

Rule Version

MOIS-ND-000030

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure a secondary interface for System Manager Portal Access of Sentry.

1. Log in to the Sentry System Manager.
2. Go to Settings >> Network >> Interfaces.
3. Click an open Physical Interface such as GigabitEthernet2.
4. Configure a Management Interface for internal access of the System Manager Portal (refer to the "MobileIron Standalone Sentry 9.8.0 Installation Guide" Physical Interfaces section for more information).

Check Contents

Verify that a secondary interface has been added for System Manager Portal Access of Sentry.

1. Log in to the Sentry System Manager.
2. Go to Settings >> Network >> Interfaces.
3. Verify a Management Interface for internal access of the System Manager Portal has been added as one of the interfaces.

If the Management Interface for internal access of the System Manager Portal has not been added as one of the Interfaces, this is a finding.

Vulnerability Number

V-250983

Documentable

False

Rule Version

MOIS-ND-000030

Severity Override Guidance

Verify that a secondary interface has been added for System Manager Portal Access of Sentry.

1. Log in to the Sentry System Manager.
2. Go to Settings >> Network >> Interfaces.
3. Verify a Management Interface for internal access of the System Manager Portal has been added as one of the interfaces.

If the Management Interface for internal access of the System Manager Portal has not been added as one of the Interfaces, this is a finding.

Check Content Reference

M

Target Key

5438