STIGQter STIGQter: STIG Summary: RUCKUS ICX NDM Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 27 May 2025:

The RUCKUS ICX device must enforce approved authorizations for controlling the flow of management information within the network device based on information flow control policies.

DISA Rule

SV-273785r1110836_rule

Vulnerability Number

V-273785

Group Title

SRG-APP-000038-NDM-000213

Rule Version

RCKS-NDM-000110

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure management access to limit source address and protocol as required:

management access src-ip [subnet_addr]/[mask] allow [protocol]

Check Contents

Verify management access is limited to the desired subnets:

SSH@ICX(config)# show management access
management access src-ip 192.168.1.0 255.255.255.0 allow ssh

If the ICX switch does not enforce approved authorizations for controlling the flow of management information within the device based on information control policies, this is a finding.

Vulnerability Number

V-273785

Documentable

False

Rule Version

RCKS-NDM-000110

Severity Override Guidance

Verify management access is limited to the desired subnets:

SSH@ICX(config)# show management access
management access src-ip 192.168.1.0 255.255.255.0 allow ssh

If the ICX switch does not enforce approved authorizations for controlling the flow of management information within the device based on information control policies, this is a finding.

Check Content Reference

M

Target Key

5695