Skip to content

Storage Area Network STIG

Rules, Groups, and Values defined within the XCCDF Benchmark

  • Unauthorized IP addresses are allowed Simple Network Management Protocol (SNMP) access to the SAN devices.

    <VulnDiscussion>SNMP, by virtue of what it is designed to do, can be a large security risk. Because SNMP can obtain device information and se...
    Rule High Severity
  • Only Internal Network SNMP Access to SAN

    <GroupDescription></GroupDescription>
    Group
  • The IP addresses of the hosts permitted SNMP access to the SAN management devices do not belong to the internal network.

    &lt;VulnDiscussion&gt;SNMP, by virtue of what it is designed to do, can be a large security risk. Because SNMP can obtain device information and se...
    Rule Medium Severity
  • Fibre Channel network End-User Platform Restricted

    <GroupDescription></GroupDescription>
    Group
  • End-user platforms are directly attached to the Fibre Channel network or access storage devices directly.

    &lt;VulnDiscussion&gt;End-user platforms should only be connected to servers that run applications that access the data found on the SAN devices. ...
    Rule Low Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules