STIGQter STIGQter: STIG Summary: McAfee MOVE AV Multi-Platform 4.5 Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 27 Jul 2018:

The McAfee MOVE AV On Demand Scan policy must be explicitly configured to stop an on-demand scan after an organization-specific period.

DISA Rule

SV-93253r1_rule

Vulnerability Number

V-78547

Group Title

MV45-ODS-000003

Rule Version

MV45-ODS-000003

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Access the McAfee ePO console.

Select Menu >> Policy >> Policy Catalog and then select "MOVE AntiVirus 4.5.0" from the Product list.

From the Category list, select "On Demand Scan".

Select each configured On Demand Scan policy.

Click "Show Advanced".

Under "On-demand Scan", configure "On-demand scan will stop after" for 150 minutes or less.

Click "Save".

Check Contents

Access the McAfee ePO console.

Select Menu >> Policy >> Policy Catalog and then select "MOVE AntiVirus 4.5.0" from the Product list.

From the Category list, select "On Demand Scan".

Select each configured On Demand Scan policy.

Click "Show Advanced".

Under "On-demand Scan", verify "On-demand scan will stop after" is configured for "150" minutes or less.

If "On-demand scan will stop after" is not configured for "150" minutes or less, this is a finding.

Vulnerability Number

V-78547

Documentable

False

Rule Version

MV45-ODS-000003

Severity Override Guidance

Access the McAfee ePO console.

Select Menu >> Policy >> Policy Catalog and then select "MOVE AntiVirus 4.5.0" from the Product list.

From the Category list, select "On Demand Scan".

Select each configured On Demand Scan policy.

Click "Show Advanced".

Under "On-demand Scan", verify "On-demand scan will stop after" is configured for "150" minutes or less.

If "On-demand scan will stop after" is not configured for "150" minutes or less, this is a finding.

Check Content Reference

M

Target Key

3233

Comments