Skip to content

Forescout Network Device Management Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-APP-000168-NDM-000256

    <GroupDescription></GroupDescription>
    Group
  • Forescout must enforce password complexity by requiring that at least one numeric character be used.

    &lt;VulnDiscussion&gt;Use of a complex password helps to increase the time and resources required to compromise the password. Password complexity, ...
    Rule Medium Severity
  • SRG-APP-000169-NDM-000257

    <GroupDescription></GroupDescription>
    Group
  • Forescout must enforce password complexity by requiring that at least one special character be used.

    &lt;VulnDiscussion&gt;Use of a complex password helps to increase the time and resources required to compromise the password. Password complexity, ...
    Rule Medium Severity
  • SRG-APP-000170-NDM-000329

    <GroupDescription></GroupDescription>
    Group
  • Forescout must be configured to send log data to a central log server for the purpose of forwarding alerts to the administrators and the Information System Security Officer (ISSO).

    &lt;VulnDiscussion&gt;The aggregation of log data kept on a syslog server can be used to detect attacks and trigger an alert to the appropriate sec...
    Rule High Severity
  • Forescout must require that when a password is changed, the characters are changed in at least eight of the positions within the password.

    &lt;VulnDiscussion&gt;If the application allows the user to consecutively reuse extensive portions of passwords, this increases the chances of pass...
    Rule Low Severity
  • SRG-APP-000179-NDM-000265

    <GroupDescription></GroupDescription>
    Group
  • Forescout must use FIPS 140-2 approved algorithms for authentication to a cryptographic module.

    &lt;VulnDiscussion&gt;Unapproved mechanisms used for authentication to the cryptographic module are not validated and therefore cannot be relied up...
    Rule High Severity
  • SRG-APP-000190-NDM-000267

    <GroupDescription></GroupDescription>
    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules