Firewall rules must be configured on the Tanium Server for Server-to-Module Server communications.
An XCCDF Rule
Description
<VulnDiscussion>The Tanium Module Server is used to extend the functionality of Tanium through the use of various workbenches. The Tanium Module Server requires communication with the Tanium Server on port 17477. Without a proper connection from the Tanium Server to the Tanium Module Server, access to the system capabilities could be denied. For more information, refer to https://docs.tanium.com/platform_install/platform_install/reference_network_ports.html.</VulnDiscussion><FalsePositives></FalsePositives><FalseNegatives></FalseNegatives><Documentable>false</Documentable><Mitigations></Mitigations><SeverityOverrideGuidance></SeverityOverrideGuidance><PotentialImpacts></PotentialImpacts><ThirdPartyTools></ThirdPartyTools><MitigationControl></MitigationControl><Responsibility></Responsibility><IAControls></IAControls>
- ID
- SV-253857r850218_rule
- Severity
- Medium
- References
- Updated
Remediation - Manual Procedure
1. Configure host-based firewall rules on the Tanium Server to allow the following required traffic:
Allow TCP traffic on port 17477 to the Tanium Module Server from the Tanium Server.
2. Configure the network firewall to allow the above traffic.