STIGQter STIGQter: STIG Summary: AvePoint Fly Server Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 28 Apr 2026:

Fly Server must be configured to prohibit or restrict the use of organization-defined functions, ports, protocols, and/or services, as defined in the Ports, Protocols, and Services Management Category Assurance List (PPSM CAL) and vulnerability assessments.

DISA Rule

SV-283927r1206911_rule

Vulnerability Number

V-283927

Group Title

SRG-APP-000142

Rule Version

FLYS-00-000035

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the internal communication ports for Fly Server Manager and Agent.
- Install Fly Server Manager and Agent.
- Set Manager Access URL and Internal Communication Port setting, set to ports that are not organization-defined to be in use by another system.

Check Contents

Open the Fly Server console in a browser and note the port number in the URL.

Fly Server uses ports 20100 and 20101 by default for Manager and Agent internal communication.

If the ports used are organization-defined to be in use by another system, this is a finding.

Vulnerability Number

V-283927

Documentable

False

Rule Version

FLYS-00-000035

Severity Override Guidance

Open the Fly Server console in a browser and note the port number in the URL.

Fly Server uses ports 20100 and 20101 by default for Manager and Agent internal communication.

If the ports used are organization-defined to be in use by another system, this is a finding.

Check Content Reference

M

Target Key

5747