Skip to content

A host-based firewall must be configured on the SCOM management servers.

An XCCDF Rule

Description

To prevent a DDoS, a firewall that inspects and drops packets must be configured.

ID
SV-237440r643966_rule
Version
SCOM-SC-000002
Severity
Medium
References
Updated

Remediation Templates

A Manual Procedure

Configure a host-based firewall based on the organization's standards. A full list of ports needed for SCOM to function properly can be found here: https://docs.microsoft.com/en-us/system-center/scom/plan-security-config-firewall?view=sc-om-2019.