SV-254879r960762_rule
V-254879
SRG-APP-000015
TANS-AP-000050
CAT II
10
Note: If only using Tanium-provided content and not accepting content from any other content providers, this is Not Applicable.
Obtain documentation from the Tanium System Administrator that contains the public key validation data.
1. Access the Tanium Server interactively.
2. Log on to the TanOS server with the tanadmin role.
3. Press "2" for "Tanium Operations Menu," and then press "Enter".
4. Press "5" for "Manage Custom Signing Keys," and then press "Enter".
5. Press "A" for "List Content Signing Keys," and then press "Enter".
6. Check the provided documentation and either update the document with the name and SHA-256 hash of the key or remove the key.
Note: If only using Tanium-provided content and not accepting content from any other content providers, this is Not Applicable.
Obtain documentation from the Tanium System Administrator that contains the public key validation data.
1. Access the Tanium Server interactively.
2. Log on to the TanOS server with the tanadmin role.
3. Press "2" for "Tanium Operations Menu," and then press "Enter".
4. Press "5" for "Manage Custom Signing Keys," and then press "Enter".
5. Press "L" for "List Content Signing Keys," and then press "Enter".
If signing keys not listed in the provided documentation are present, this is a finding.
V-254879
False
TANS-AP-000050
Note: If only using Tanium-provided content and not accepting content from any other content providers, this is Not Applicable.
Obtain documentation from the Tanium System Administrator that contains the public key validation data.
1. Access the Tanium Server interactively.
2. Log on to the TanOS server with the tanadmin role.
3. Press "2" for "Tanium Operations Menu," and then press "Enter".
4. Press "5" for "Manage Custom Signing Keys," and then press "Enter".
5. Press "L" for "List Content Signing Keys," and then press "Enter".
If signing keys not listed in the provided documentation are present, this is a finding.
M
5492