Skip to content

Intrusion Detection and Prevention Systems (IDPS) Security Requirements Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • The IDPS must block malicious ICMP packets by properly configuring ICMP signatures and rules.

    <VulnDiscussion>Internet Control Message Protocol (ICMP) messages are used to provide feedback about problems in the network. These messages ...
    Rule Medium Severity
  • SRG-NET-000246-IDPS-00205

    <GroupDescription></GroupDescription>
    Group
  • The IDPS must be configured in accordance with the security configuration settings based on DoD security policy and technology-specific security best practices.

    &lt;VulnDiscussion&gt;Configuring the IDPS to implement organization-wide security implementation guides and security checklists ensures compliance...
    Rule Medium Severity
  • SRG-NET-000131-IDPS-00011

    <GroupDescription></GroupDescription>
    Group
  • The IDPS must be configured to remove or disable non-essential capabilities which are not required for operation or not related to IDPS functionality (e.g., DNS, email client or server, FTP server, or web server).

    &lt;VulnDiscussion&gt;An IDPS can be capable of providing a wide variety of capabilities. Not all of these capabilities are necessary. Unnecessary ...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules