An Out-of-Band (OOB) management network must be deployed or 24x7 personnel must have console access for device management.
An XCCDF Rule
Description
<VulnDiscussion>From an architectural point of view, providing Out-Of-Band (OOB) management of network systems is the best first step in any management strategy. No production traffic resides on an out-of-band network. The biggest advantage to implementation of an OOB network is providing support and maintenance to the network that has become degraded or compromised. During an outage or degradation period the in band management link may not be available. The consequences of loss of availability is unacceptable and could include the immediate and sustained loss of mission effectiveness. Maintenance support for key IT assets must be available to respond 24x7 immediately upon failure.</VulnDiscussion><FalsePositives></FalsePositives><FalseNegatives></FalseNegatives><Documentable>false</Documentable><Mitigations></Mitigations><SeverityOverrideGuidance></SeverityOverrideGuidance><PotentialImpacts></PotentialImpacts><ThirdPartyTools></ThirdPartyTools><MitigationControl></MitigationControl><Responsibility></Responsibility><IAControls></IAControls>
- ID
- SV-251377r808534_rule
- Severity
- Medium
- References
- Updated
Remediation - Manual Procedure
The network administrator will manage devices via direct connection or access via OOB management network.