Tanium Server files must be excluded from host-based intrusion prevention intervention.
An XCCDF Rule
Description
<VulnDiscussion>Similar to any other host-based applications, the Tanium Server is subject to the restrictions other System-level software may place on an operating environment. Antivirus, IPS, Encryption, or other security and management stack software may disallow the Tanium Server from working as expected. https://docs.tanium.com/platform_install/platform_install/reference_host_system_security_exceptions.html.</VulnDiscussion><FalsePositives></FalsePositives><FalseNegatives></FalseNegatives><Documentable>false</Documentable><Mitigations></Mitigations><SeverityOverrideGuidance></SeverityOverrideGuidance><PotentialImpacts></PotentialImpacts><ThirdPartyTools></ThirdPartyTools><MitigationControl></MitigationControl><Responsibility></Responsibility><IAControls></IAControls>
- ID
- SV-93459r1_rule
- Severity
- Medium
- References
- Updated
Remediation - Manual Procedure
Implement exclusion policies within the HIPS software solution to exclude the Tanium Server program files from HIPS intervention.