STIGQter STIGQter: STIG Summary: CA API Gateway NDM Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 19 Sep 2016:

The CA API Gateway must generate audit records when concurrent logons from different workstations occur.

DISA Rule

SV-86191r1_rule

Vulnerability Number

V-71567

Group Title

SRG-APP-000506-NDM-000323

Rule Version

CAGW-DM-000340

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Obtain a copy of the appropriate audit package RPM file from CA Support and install it using RPM:

rpm -i "RPMFILE"

Check Contents

Confirm the CA API Gateway file "/etc/audit/audit.rules" is the file as distributed using command:
rpm -Vf /etc/audit/audit.rules

If the string returned contains a "5" (ok: .......T., failure: S.5....T.), this is a finding.

Vulnerability Number

V-71567

Documentable

False

Rule Version

CAGW-DM-000340

Severity Override Guidance

Confirm the CA API Gateway file "/etc/audit/audit.rules" is the file as distributed using command:
rpm -Vf /etc/audit/audit.rules

If the string returned contains a "5" (ok: .......T., failure: S.5....T.), this is a finding.

Check Content Reference

M

Target Key

3051

Comments