The Solidcore Client Exception Rules must be documented in the organizations written policy.
An XCCDF Rule
Description
When exceptions are created for applications, it results in potential attack vectors. As such, exceptions should only be created with a full approval by the local ISSO/ISSM. The organization's entire written policy requires approval by the ISSO/ISSM/AO and is required to be under CAB/CCB oversight.
- ID
- SV-213347r961479_rule
- Version
- MCAC-TE-000123
- Severity
- Medium
- References
- Updated
Remediation Templates
A Manual Procedure
From the ePO server console System Tree, select the "Systems" tab.
Select "This Group and All Subgroups".
Select the asset.
Select "Actions".
Select "Agent".