STIGQter STIGQter: STIG Summary: Tanium 7.x Operating System on TanOS Security Technical Implementation Guide Version: 2 Release: 2 Benchmark Date: 02 Apr 2025:

The Tanium operating system (TanOS) must perform data origin verification authentication on the name/address resolution responses the system receives from authoritative sources.

DISA Rule

SV-254869r958866_rule

Vulnerability Number

V-254869

Group Title

SRG-OS-000402

Rule Version

TANS-OS-001330

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

1. Work with a systems administrator to determine a designated Name Server that performs data origin authentic ion checks.

2. Sign in to the TanOS console as a user with the tanadmin role.

3. Enter "A" to go to the "Appliance Configuration" menu.

4. Enter "1" to go to the "Hostname/DNS Configuration" menu.

5. Enter "2" and follow the prompts to modify the DNS server configuration.

Check Contents

1. Work with a systems administrator to determine a designated Name Server that performs data origin authentic ion checks.

2. Sign in to the TanOS console as a user with the tanadmin role.

3. Enter "A" to go to the "Appliance Configuration" menu.

4. Enter "1" to go to the "Hostname/DNS Configuration" menu.

5. Enter "2", if the ip address shown is not the designated Name Server determined in step 1. This is a finding.

Vulnerability Number

V-254869

Documentable

False

Rule Version

TANS-OS-001330

Severity Override Guidance

1. Work with a systems administrator to determine a designated Name Server that performs data origin authentic ion checks.

2. Sign in to the TanOS console as a user with the tanadmin role.

3. Enter "A" to go to the "Appliance Configuration" menu.

4. Enter "1" to go to the "Hostname/DNS Configuration" menu.

5. Enter "2", if the ip address shown is not the designated Name Server determined in step 1. This is a finding.

Check Content Reference

M

Target Key

5491