STIGQter STIGQter: STIG Summary: CA API Gateway ALG Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 28 Apr 2017:

The CA API Gateway must not have unnecessary services and functions enabled.

DISA Rule

SV-85967r1_rule

Vulnerability Number

V-71343

Group Title

SRG-NET-000131-ALG-000085

Rule Version

CAGW-GW-000270

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Open the CA API Gateway - Policy Manager, select "Tasks" from the main menu, and chose "Manage Listen Ports".

Update the Listen ports and firewall rules in accordance with organizational requirements for disabling unnecessary services.

Check Contents

Open the CA API Gateway - Policy Manager, select "Tasks" from the main menu, and chose "Manage Listen Ports".

If the Listen ports or firewall rules are not configured in accordance with organizational requirements for disabling unnecessary services, this is a finding.

Vulnerability Number

V-71343

Documentable

False

Rule Version

CAGW-GW-000270

Severity Override Guidance

Open the CA API Gateway - Policy Manager, select "Tasks" from the main menu, and chose "Manage Listen Ports".

If the Listen ports or firewall rules are not configured in accordance with organizational requirements for disabling unnecessary services, this is a finding.

Check Content Reference

M

Target Key

3049

Comments