STIGQter STIGQter: STIG Summary: Application Layer Gateway (ALG) Security Requirements Guide (SRG) Version: 1 Release: 2 Benchmark Date: 24 Jul 2015:

The ALG must not have unnecessary services and functions enabled.

DISA Rule

SV-68745r1_rule

Vulnerability Number

V-54499

Group Title

SRG-NET-000131-ALG-000085

Rule Version

SRG-NET-000131-ALG-000085

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Remove unneeded services and functions from the ALG. Removal is recommended since the service or function may be inadvertently enabled. However, if removal is not possible, disable the service or function.

Check Contents

Review the ALG configuration to determine if services or functions not required for operation, or not related to ALG functionality (e.g., DNS, email client or server, FTP server, or web server) are enabled.

If unnecessary services and functions are enabled on the ALG, this is a finding.

Vulnerability Number

V-54499

Documentable

False

Rule Version

SRG-NET-000131-ALG-000085

Severity Override Guidance

Review the ALG configuration to determine if services or functions not required for operation, or not related to ALG functionality (e.g., DNS, email client or server, FTP server, or web server) are enabled.

If unnecessary services and functions are enabled on the ALG, this is a finding.

Check Content Reference

M

Target Key

2489

Comments