UCF STIG Viewer Logo

Intrusion detection software must be able to interconnect using standard protocols to create a system wide intrusion detection system.


Overview

Finding ID Version Rule ID IA Controls Severity
V-32586 SRG-APP-000281-DB-NA SV-42923r1_rule Medium
Description
When utilizing intrusion detection software, monitoring components are usually dispersed throughout the network, such as, when utilizing HIDS and multiple NIDS sensors. In order to leverage the capabilities of intrusion detection systems to get a complete overall view of network and host activity, these separate components must be able to report and react to activity they detect. Non-standard or custom communication protocols do not provide the reliability and veracity required of an enterprise class intrusion detection system. An example of a custom protocol includes, but is not limited to, vendor specific communication protocols that have not undergone IETF RFC evaluation and/or are not in common use throughout the Internet as a whole. This requirement is specific to applications providing intrusion detection (IDS). This requirement is NA for databases.
STIG Date
Database Security Requirements Guide 2012-07-02

Details

Check Text ( C-41024r1_chk )
This check is NA for databases.
Fix Text (F-36500r1_fix)
This fix is NA for databases.