STIGQter STIGQter: STIG Summary: Network Infrastructure Policy Security Technical Implementation Guide Version: 10 Release: 7 Benchmark Date: 24 Oct 2024:

An Intrusion Detection and Prevention System (IDPS) sensor must be deployed to monitor network segments that house network security management servers.

DISA Rule

SV-251337r853644_rule

Vulnerability Number

V-251337

Group Title

NET-IDPS-019

Rule Version

NET-IDPS-019

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Install an IDPS to monitor and protect the Management Network (management subnet or OOB network).

Check Contents

Review the management network topology and verify network security management servers are being monitored by an IDPS.

If an IDPS sensor is not deployed to monitor all segments housing network security management servers, this is a finding.

Vulnerability Number

V-251337

Documentable

False

Rule Version

NET-IDPS-019

Severity Override Guidance

Review the management network topology and verify network security management servers are being monitored by an IDPS.

If an IDPS sensor is not deployed to monitor all segments housing network security management servers, this is a finding.

Check Content Reference

M

Target Key

5444