SV-266144r1137545_rule
V-266144
SRG-NET-000018-ALG-000017
F5BI-AP-300013
CAT I
10
From the BIG-IP GUI:
1. Security.
2. Network Firewall.
3. Policies.
4. Create and/or edit firewall policies that are applied to the Context needed to enforce approved authorizations for controlling the flow of information within the network.
From the BIG-IP GUI:
1. Security.
2. Network Firewall.
3. Active Rules.
4. Verify "Policy Type" is set to "Enforced".
5. Inspect the different "Context" choices and verify rules are configured to enforce approved authorizations for controlling the flow of information within the network.
If the BIG-IP appliance is not configured to enforce approved authorizations for controlling the flow of information within the network based on attribute- and content-based inspection of the source, destination, headers, and/or content of the communications traffic, this is a finding.
V-266144
False
F5BI-AP-300013
From the BIG-IP GUI:
1. Security.
2. Network Firewall.
3. Active Rules.
4. Verify "Policy Type" is set to "Enforced".
5. Inspect the different "Context" choices and verify rules are configured to enforce approved authorizations for controlling the flow of information within the network.
If the BIG-IP appliance is not configured to enforce approved authorizations for controlling the flow of information within the network based on attribute- and content-based inspection of the source, destination, headers, and/or content of the communications traffic, this is a finding.
M
5640