SV-253789r997230_rule
V-253789
SRG-APP-000267
TANS-00-001190
CAT II
10
1. Access the Tanium Server.
2. Log on to the server with an account that has administrative privileges.
3. Open a File Explorer window.
4. Navigate to Program Files >> Tanium >> Tanium Server.
5. Right-click the "Logs" folder.
6. Select "Properties".
7. Select the "Security" tab.
8. Click the "Advanced" button.
9. Disable folder inheritance.
10. Change/verify the owner of the directory to the [Tanium service account].
11. Reduce [Tanium service account] privileges to modify permissions on the directory.
12. Ensure [Tanium Admins] group has full permissions on the directory.
13. Right-click the "TDL_Logs" folder.
14. Select "Properties".
15. Select the "Security" tab.
16. Click the "Advanced" button.
17. Disable folder inheritance.
18. Change/verify the owner of the directory to the [Tanium service account].
19. Reduce [Tanium service account] privileges to modify permissions on the directory.
20. Ensure [Tanium Admins] group has full permissions on the directory.
1. Access the Tanium Server.
2. Log on to the server with an account that has administrative privileges.
3. Open a File Explorer window.
4. Navigate to Program Files >> Tanium >> Tanium Server.
5. Right-click the "Logs" folder.
6. Select "Properties".
7. Select the "Security" tab.
8. Click the "Advanced" button.
- Validate the owner of the directory is the [Tanium service account].
- Validate the [Tanium service account] is the only account with modify permissions on the directory.
- Validate the [Tanium Administrators] group has full permissions on the directory.
9. Right-click the "TDL_Logs" folder.
10. Select "Properties".
11. Select the "Security" tab.
12. Click the "Advanced" button.
- Validate the owner of the directory is the [Tanium service account].
- Validate the [Tanium service account] privileges is the only account with modify permissions on the directory.
- Validate the [Tanium Administrators] group has full permissions on the directory.
If any of the specified permissions are not set as required, this is a finding.
V-253789
False
TANS-00-001190
1. Access the Tanium Server.
2. Log on to the server with an account that has administrative privileges.
3. Open a File Explorer window.
4. Navigate to Program Files >> Tanium >> Tanium Server.
5. Right-click the "Logs" folder.
6. Select "Properties".
7. Select the "Security" tab.
8. Click the "Advanced" button.
- Validate the owner of the directory is the [Tanium service account].
- Validate the [Tanium service account] is the only account with modify permissions on the directory.
- Validate the [Tanium Administrators] group has full permissions on the directory.
9. Right-click the "TDL_Logs" folder.
10. Select "Properties".
11. Select the "Security" tab.
12. Click the "Advanced" button.
- Validate the owner of the directory is the [Tanium service account].
- Validate the [Tanium service account] privileges is the only account with modify permissions on the directory.
- Validate the [Tanium Administrators] group has full permissions on the directory.
If any of the specified permissions are not set as required, this is a finding.
M
5476