Skip to content

I - Mission Critical Public

Rules and Groups employed by this XCCDF Profile

  • MFD fax from network auditing

    Group
  • Auditing of user access and fax logs must be enabled when fax from the network is enabled.

    Without auditing the originator and destination of a fax cannot be determined. Prosecuting of an individual who maliciously compromises sensitive data via a fax will be hindered without audits. Th...
    Rule Low Severity
  • MFD scan to SMTP (email)

    Group
  • MFDs must not allow scan to SMTP (email).

    The SMTP engines found on the MFDs reviewed when writing the MFD STIG did not have robust enough security features supporting scan to email. Because of the lack of robust security, scan to email wi...
    Rule Medium Severity
  • MFD Hard Drive Lock

    Group
  • A MFD device does not have a mechanism to lock and prevent access to the hard drive.

    If the hard disk drive of a MFD can be removed from the MFD the data on the drive can be recovered and read. This can lead to a compromise of sensitive data. The IAO will ensure the device has a ...
    Rule Medium Severity
  • MFD/Printer Global Configuration Settings

    Group
  • The device is not configured to prevent non-printer administrators from altering the global configuration of the device.

    If unauthorized users can alter the global configuration of the MFD they can remove all security. This can lead to the compromise of sensitive data or the compromise of the network the MFD is atta...
    Rule High Severity
  • MFD03.002

    Group
  • The MFD must be configured to prohibit the use of all unnecessary and/or nonsecure functions, physical and logical ports, protocols, and/or services.

    In order to prevent unauthorized connection of devices, unauthorized transfer of information, or unauthorized tunneling (i.e., embedding of data types within data types), organizations must disable...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules