Skip to content

Ivanti Sentry 9.x NDM Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • Sentry must enforce password complexity by requiring that at least one special character be used.

    <VulnDiscussion>Use of a complex password helps to increase the time and resources required to compromise the password. Password complexity, ...
    Rule Medium Severity
  • SRG-APP-000177-NDM-000263

    <GroupDescription></GroupDescription>
    Group
  • Sentry, for PKI-based authentication, must be configured to map validated certificates to unique user accounts.

    &lt;VulnDiscussion&gt;Without mapping the PKI certificate to a unique user account, the ability to determine the identities of individuals or the s...
    Rule High Severity
  • SRG-APP-000179-NDM-000265

    <GroupDescription></GroupDescription>
    Group
  • Sentry must be configured to send log data to a central log server for the purpose of forwarding alerts to the administrators and the ISSO.

    &lt;VulnDiscussion&gt;Without syslog enabled it will be difficult for an ISSO to correlate the users behavior and identify potential threats within...
    Rule High Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules