A firewall or router rule must block all ingress and egress traffic from the enclave perimeter to the MFD or Network Printer.
An XCCDF Rule
Description
Access to the MFD or printer from outside the enclave network could lead to a denial of service caused by a large number of large print files being sent to the device. Ability for the MFD or printer to access addresses outside the enclave network could lead to a compromise of sensitive data caused by forwarding a print file to a location outside of the enclave network. This also prevents accidental implementation of a “call-home” feature that is not allowed.
- ID
- SV-7001r2_rule
- Version
- MFD01.003
- Severity
- Medium
- Updated
Remediation Templates
A Manual Procedure
Configure a firewall or router rule to block all ingress and egress traffic from the enclave perimeter to the MFD or Network Printer.