Skip to content

II - Mission Support Public

Rules and Groups employed by this XCCDF Profile

  • SRG-APP-000516-AU-000410

    Group
  • Analysis, viewing, and indexing functions, services, and applications used as part of Splunk Enterprise must be configured to comply with DoD-trusted path and access requirements.

    Access to Splunk Enterprise for analysis, viewing, indexing functions, services, and applications, such as analysis tools and other vendor-provided applications, must be secured. Software used to p...
    Rule Medium Severity
  • SRG-APP-000141-AU-000090

    Group
  • When Splunk Enterprise is distributed over multiple servers, each server must be configured to disable non-essential capabilities.

    Applications are capable of providing a wide variety of functions and services. Some of the functions and services may not be necessary to support the configuration. This becomes more of an issue i...
    Rule Medium Severity
  • SRG-APP-000148-AU-002270

    Group
  • Splunk Enterprise must use organization-level authentication to uniquely identify and authenticate users.

    To assure accountability and prevent unauthenticated access, organizational users must be uniquely identified and authenticated to prevent potential misuse and compromise of the system. Sharing o...
    Rule High Severity
  • SRG-APP-000156-AU-002380

    Group
  • Splunk Enterprise must use HTTPS/SSL for access to the user interface.

    A replay attack may enable an unauthorized user to gain access to the application. Authentication sessions between the authenticator and the application validating the user credentials must not be ...
    Rule Medium Severity
  • SRG-APP-000166-AU-002490

    Group
  • Splunk Enterprise must be configured to enforce password complexity by requiring that at least one uppercase character be used.

    Use of a complex password helps to increase the time and resources required to compromise the password. Password complexity, or strength, is a measure of the effectiveness of a password in resistin...
    Rule Low Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules