SV-254907r1043177_rule
V-254907
SRG-APP-000142
TANS-AP-000365
CAT II
10
1. Consult with the personnel who maintain the Enterprise Security Suite to configure host-based and network firewall rules to allow the following:
1A. Tanium Clients or Zone Clients over TCP port 17472, bi-directionally.
Note: If a Zone Server is not being used, this is Not Applicable.
1. Consult with the Tanium System Administrator to verify which firewall is being used as a host-based firewall on the Tanium Zone Server.
2. Access the host-based firewall configuration on the Tanium Zone Server.
3. Validate a rule exists for the following:
3A. Port Needed: Tanium Clients to Zone Server over TCP port 17472, bi-directionally.
If a host-based firewall rule does not exist to allow TCP port 17472, bi-directionally, from Tanium Clients to the Tanium Zone Server, this is a finding.
V-254907
False
TANS-AP-000365
Note: If a Zone Server is not being used, this is Not Applicable.
1. Consult with the Tanium System Administrator to verify which firewall is being used as a host-based firewall on the Tanium Zone Server.
2. Access the host-based firewall configuration on the Tanium Zone Server.
3. Validate a rule exists for the following:
3A. Port Needed: Tanium Clients to Zone Server over TCP port 17472, bi-directionally.
If a host-based firewall rule does not exist to allow TCP port 17472, bi-directionally, from Tanium Clients to the Tanium Zone Server, this is a finding.
M
5492