Skip to content

Sensor traffic in transit must be protected at all times via an Out-of-Band (OOB) network or an encrypted tunnel between site locations.

An XCCDF Rule

Description

User interface services must be physically or logically separated from data storage and management services. Data from IDS sensors must be protected by confidentiality controls; from being lost and altered.

ID
SV-251339r805972_rule
Version
NET-IDPS-024
Severity
Medium
References
Updated

Remediation Templates

A Manual Procedure

Design a communications path for OOB traffic or create an encrypted tunnel using a FIPS 140-2 validated encryption algorithm to protect data.