STIGQter STIGQter: STIG Summary: Network Infrastructure Policy Security Technical Implementation Guide Version: 10 Release: 7 Benchmark Date: 24 Oct 2024:

If a Secure File Transfer Protocol (SFTP) server is used to provide updates to the sensors, the server must be configured to allow read-only access to the files within the directory on which the signature packs are placed.

DISA Rule

SV-251342r805981_rule

Vulnerability Number

V-251342

Group Title

NET-IDPS-029

Rule Version

NET-IDPS-029

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Modify the access restrictions to prevent the signatures from being updated.

Check Contents

If the signatures are located on a server, verify that the directories on which the signature packs are placed are protected by read-only access.

If the directories are not set for read-only access, this is a finding.

Vulnerability Number

V-251342

Documentable

False

Rule Version

NET-IDPS-029

Severity Override Guidance

If the signatures are located on a server, verify that the directories on which the signature packs are placed are protected by read-only access.

If the directories are not set for read-only access, this is a finding.

Check Content Reference

M

Target Key

5444