STIGQter STIGQter: STIG Summary: Ivanti Connect Secure NDM Security Technical Implementation Guide Version: 2 Release: 3 Benchmark Date: 01 Oct 2025:

The ICS must be configured to generate audit records when successful/unsuccessful attempts to access privileges occur.

DISA Rule

SV-258621r960885_rule

Vulnerability Number

V-258621

Group Title

SRG-APP-000091-NDM-000223

Rule Version

IVCS-NM-000510

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

In the ICS Web UI, navigate to System >> Log/Monitoring >> Admin Access >> Settings.
1. Check the box under the section "Select Events to Log" for "Administrator Logins".
2. Click "Save Changes".

Check Contents

In the ICS Web UI, navigate to System >> Log/Monitoring >> Admin Access >> Settings.

1. Under the section "Select Events to Log", verify "Administrator Logins" is checked.

If the ICS is not configured to generate audit records when successful/unsuccessful attempts to access privileges occur, this is a finding.

Vulnerability Number

V-258621

Documentable

False

Rule Version

IVCS-NM-000510

Severity Override Guidance

In the ICS Web UI, navigate to System >> Log/Monitoring >> Admin Access >> Settings.

1. Under the section "Select Events to Log", verify "Administrator Logins" is checked.

If the ICS is not configured to generate audit records when successful/unsuccessful attempts to access privileges occur, this is a finding.

Check Content Reference

M

Target Key

5558