Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-35664 | SRG-APP-000255-AS-NA | SV-46951r1_rule | Medium |
Description |
---|
Access into an organization's internal network and to key internal boundaries must be tightly controlled and managed. Applications monitoring and/or controlling communications at the external boundary of the system and at key internal boundaries must be capable of preventing public access into the organization's internal networks except as appropriately mediated by managed interfaces. The requirement is NA. App servers are not designed to be firewalls. |
STIG | Date |
---|---|
Application Server Security Requirements Guide | 2013-01-08 |
Check Text ( C-44006r1_chk ) |
---|
This requirement is NA for the AS SRG. |
Fix Text (F-40206r1_fix) |
---|
The requirement is NA. No fix is required. |