II - Mission Support Public
Rules and Groups employed by this XCCDF Profile
-
SRG-APP-000065-NDM-000214
Group -
The ICS must be configured to enforce the limit of three consecutive invalid logon attempts, after which time it must block any login attempt for 15 minutes.
By limiting the number of failed login attempts, the risk of unauthorized system access via user password guessing, otherwise known as brute-forcing, is reduced.Rule Medium Severity -
SRG-APP-000516-NDM-000340
Group -
The ICS must be configured to conduct backups of system level information contained in the information system when changes occur.
System-level information includes default and customized settings and security attributes, including ACLs that relate to the network device configuration, as well as software required for the execu...Rule Medium Severity -
SRG-APP-000435-NDM-000315
Group -
The ICS must be configured to protect against known types of denial-of-service (DoS) attacks by enabling JITC mode.
This configuration protects the confidentiality of Web UI session and guards against DoS attacks. If JITC (DODIN APL) Mode is enabled, then the following protections are enforced: - Log support for...Rule High Severity -
SRG-APP-000412-NDM-000331
Group -
The ICS must be configured to implement cryptographic mechanisms using a FIPS 140-2/140-3 approved algorithm.
If unsecured protocols (lacking cryptographic mechanisms) are used for sessions, the contents of those sessions will be susceptible to eavesdropping, potentially putting sensitive data (including a...Rule High Severity
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.