Skip to content

II - Mission Support Classified

Rules and Groups employed by this XCCDF Profile

  • SRG-APP-000516-NDM-000338

    <GroupDescription></GroupDescription>
    Group
  • Symantec ProxySG must employ automated mechanisms to centrally verify authentication settings.

    &lt;VulnDiscussion&gt;The use of authentication servers or other centralized management servers for providing centralized authentication services i...
    Rule Medium Severity
  • SRG-APP-000516-NDM-000336

    <GroupDescription></GroupDescription>
    Group
  • Accounts for device management must be configured on the authentication server and not on Symantec ProxySG itself, except for the account of last resort.

    &lt;VulnDiscussion&gt;Centralized management of authentication settings increases the security of remote and nonlocal access methods. This control ...
    Rule Medium Severity
  • SRG-APP-000329-NDM-000287

    <GroupDescription></GroupDescription>
    Group
  • Symantec ProxySG must use Role-Based Access Control (RBAC) to assign privileges to users for access to files and functions.

    &lt;VulnDiscussion&gt;Organizations can create specific roles based on job functions and the authorizations (i.e., privileges) to perform needed op...
    Rule Medium Severity
  • SRG-APP-000516-NDM-000337

    <GroupDescription></GroupDescription>
    Group
  • Symantec ProxySG must employ automated mechanisms to centrally apply authentication settings.

    &lt;VulnDiscussion&gt;The use of authentication servers or other centralized management servers for providing centralized authentication services i...
    Rule Medium Severity
  • SRG-APP-000516-NDM-000340

    <GroupDescription></GroupDescription>
    Group
  • Symantec ProxySG must support organizational requirements to conduct backups of system level information contained in the ProxySG when changes occur or weekly, whichever is sooner.

    &lt;VulnDiscussion&gt;System-level information includes default and customized settings and security attributes, including ACLs that relate to the ...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules