STIGQter STIGQter: STIG Summary: RUCKUS ICX NDM Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 27 May 2025:

The RUCKUS ICX device must be configured to prohibit the use of all unnecessary and/or nonsecure functions, ports, protocols, and/or services

DISA Rule

SV-273798r1110830_rule

Vulnerability Number

V-273798

Group Title

SRG-APP-000142-NDM-000245

Rule Version

RCKS-NDM-000340

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Disable unnecessary/unsecure functions as required, such as:

SSH@ICX(config)# web http disable
SSH@ICX(config)# web https disable
SSH@ICX(config)# no ip proxy-arp
SSH@ICX(config)# no ip dns server [address]
SSH@ICX(config)# no telnet server

Check Contents

Check the configuration for unnecessary/nonsecure functions including any of the below commands:

ip dns server …
web-management http
web-management https
telnet server
ip proxy-arp

If the above or any other service/function deemed unnecessary or unsecure is listed, this is a finding.

Vulnerability Number

V-273798

Documentable

False

Rule Version

RCKS-NDM-000340

Severity Override Guidance

Check the configuration for unnecessary/nonsecure functions including any of the below commands:

ip dns server …
web-management http
web-management https
telnet server
ip proxy-arp

If the above or any other service/function deemed unnecessary or unsecure is listed, this is a finding.

Check Content Reference

M

Target Key

5695