STIGQter STIGQter: STIG Summary: Trend Micro Deep Security 9.x Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 26 Feb 2016: Trend Deep Security must generate audit records for all direct access to the information system.

DISA Rule

SV-80521r1_rule

Vulnerability Number

V-66031

Group Title

SRG-APP-000508

Rule Version

TMDS-00-000395

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the Trend Deep Security server to generate audit records for all direct access to the information system.

Enable the necessary audit setting to capture direct access to the system by selecting “Record” and “Forward” within the Administration >> System Settings >> System Events, system settings.

Check Contents

Review the Trend Deep Security server to ensure audit records are generated for all direct access to the information system.

Interview the ISSO for a list of direct access objects that should be audited within the application “System Events.”

Verify the list against the Administration >> System Settings >> System Events tab.

If the events are not set to “Record” and “Forward”, this is a finding.

Vulnerability Number

V-66031

Documentable

False

Rule Version

TMDS-00-000395

Severity Override Guidance

Review the Trend Deep Security server to ensure audit records are generated for all direct access to the information system.

Interview the ISSO for a list of direct access objects that should be audited within the application “System Events.”

Verify the list against the Administration >> System Settings >> System Events tab.

If the events are not set to “Record” and “Forward”, this is a finding.

Check Content Reference

M

Target Key

2955

Comments