STIGQter STIGQter: STIG Summary: HPE Nimble Storage Array NDM Security Technical Implementation Guide Version: 2 Release: 1 Benchmark Date: 24 Jul 2024:

The HPE Nimble must forward critical alerts (at a minimum) to the system administrators and the ISSO.

DISA Rule

SV-252199r961863_rule

Vulnerability Number

V-252199

Group Title

SRG-APP-000516-NDM-000350

Rule Version

HPEN-NM-000140

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Configure email alerts (optional)
group--edit [--smtp_serversmtp server] [--smtp_portsmtp port] [--smtp_auth {yes | no}] [--smtp_username username]
--smtp_encrypt_type ssl [--smtp_from_addr email addr] [--smtp_to_addr email addr]
[--send_event_data {yes | no}] [--alert_level {info | warning | critical}]

To specify and enable logging of alerts, type "group --edit --syslog_enabled yes --syslog_server <server> --syslog_port <port>", where <server> and <port> are the server DNS name or IP address, and <port> is the port to send syslog messages to.

Check Contents

Type "group --info | grep -i syslog" and review the output lines. The "Syslogd enabled" value should be "Yes", and the "Syslogd server" and "Syslogd port" values should contain the correct syslog server and port values. If not, this is a finding.

Vulnerability Number

V-252199

Documentable

False

Rule Version

HPEN-NM-000140

Severity Override Guidance

Type "group --info | grep -i syslog" and review the output lines. The "Syslogd enabled" value should be "Yes", and the "Syslogd server" and "Syslogd port" values should contain the correct syslog server and port values. If not, this is a finding.

Check Content Reference

M

Target Key

5460