STIGQter STIGQter: STIG Summary: F5 BIG-IP TMOS ALG Security Technical Implementation Guide Version: 1 Release: 3 Benchmark Date: 01 Jul 2026:

The F5 BIG-IP appliance must check the validity of all data inputs except those specifically identified by the organization.

DISA Rule

SV-266158r1024387_rule

Vulnerability Number

V-266158

Group Title

SRG-NET-000401-ALG-000127

Rule Version

F5BI-AP-300064

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

From the BIG-IP GUI:
1. Security.
2. Application Security.
3. Parameters.
4. Parameters List.
5. Select the appropriate policy from the drop-down menu in the top left.
6. Configure the appropriate parameters for the application (e.g., character set, length, numerical range, and acceptable values).

Refer to vendor documentation for more information.

Check Contents

From the BIG-IP GUI:
1. Security.
2. Application Security.
3. Parameters.
4. Parameters List.
5. Select the appropriate policy from the drop-down menu in the top left.
6. Verify the appropriate parameters are configured for the application (e.g., character set, length, numerical range, and acceptable values).

If the BIG-IP appliance is not configured to check the validity of all data inputs except those specifically identified by the organization, this is a finding.

Vulnerability Number

V-266158

Documentable

False

Rule Version

F5BI-AP-300064

Severity Override Guidance

From the BIG-IP GUI:
1. Security.
2. Application Security.
3. Parameters.
4. Parameters List.
5. Select the appropriate policy from the drop-down menu in the top left.
6. Verify the appropriate parameters are configured for the application (e.g., character set, length, numerical range, and acceptable values).

If the BIG-IP appliance is not configured to check the validity of all data inputs except those specifically identified by the organization, this is a finding.

Check Content Reference

M

Target Key

5640