STIGQter STIGQter: STIG Summary: Tanium 7.x Application on TanOS Security Technical Implementation Guide Version: 2 Release: 2 Benchmark Date: 02 Apr 2025:

The Tanium Application Server must be configured to prohibit or restrict the use of organization-defined functions, ports, protocols, and/or services, as defined in the PPSM CAL and vulnerability assessments.

DISA Rule

SV-254908r1067702_rule

Vulnerability Number

V-254908

Group Title

SRG-APP-000142

Rule Version

TANS-AP-000370

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Submit a formal request to have the Tanium communication ports evaluated and added to the PPSM CAL.

Check Contents

Review the PPSM CAL to ensure Tanium has been registered with all of the TCP ports required for functionality to include (but not limited to) TCP 17472, 17477, 17440, 17441, and 433.

If any TCP ports are being used on the Tanium Server that have been deemed as restricted by the PPSM CAL, this is a finding.

Vulnerability Number

V-254908

Documentable

False

Rule Version

TANS-AP-000370

Severity Override Guidance

Review the PPSM CAL to ensure Tanium has been registered with all of the TCP ports required for functionality to include (but not limited to) TCP 17472, 17477, 17440, 17441, and 433.

If any TCP ports are being used on the Tanium Server that have been deemed as restricted by the PPSM CAL, this is a finding.

Check Content Reference

M

Target Key

5492