Version | Date | Finding Count (2) | ||
---|---|---|---|---|
1 | 2019-03-20 | CAT I (High): 1 | CAT II (Med): 1 | CAT III (Low): 0 |
STIG Description |
---|
This Security Technical Implementation Guide is published as a tool to improve the security of Department of Defense (DoD) information systems. The requirements are derived from the National Institute of Standards and Technology (NIST) 800-53 and related documents. Comments or proposed revisions to this document should be sent via email to the following address: disa.stig_spt@mail.mil. |
Finding ID | Severity | Title | Description |
---|---|---|---|
V-81433 | High | Citrix Windows Virtual Delivery Agent must implement DoD-approved encryption. | Without confidentiality protection mechanisms, unauthorized individuals may gain access to sensitive information via a remote access session. Remote access is access to DoD nonpublic information... |
V-81435 | Medium | Citrix Windows Virtual Delivery Agent must be configured to prohibit or restrict the use of ports, as defined in the PPSM CAL and vulnerability assessments. | In order to prevent unauthorized connection of devices, unauthorized transfer of information, or unauthorized tunneling (i.e., embedding of data types within data types), organizations must... |