UCF STIG Viewer Logo

The network element must employ automated mechanisms to respond to unauthorized changes to organizationally defined configuration settings.


Overview

Finding ID Version Rule ID IA Controls Severity
SRG-NET-000128-FW-NA SRG-NET-000128-FW-NA SRG-NET-000128-FW-NA_rule Medium
Description
Uncoordinated or incorrect configuration changes to network components can potentially lead to network outages and compromises. Centrally managing configuration changes for the firewall can ensure they are done at the correct time and, if necessary, in synchronization with each other which can be vital for nodes that peer and require compatible configurations. Centralized configuration management also provides visibility and tracking of enterprise level activity promoting a sound configuration management procedure as well as an automatic mechanism to initiate an alert when an unauthorized change has been detected. Centralized mechanisms for configuration management are not a function of the firewall.
STIG Date
Firewall Security Requirements Guide 2012-12-10

Details

Check Text ( C-SRG-NET-000128-FW-NA_chk )
This requirement is NA for firewall. No fix required.
Fix Text (F-SRG-NET-000128-FW-NA_fix)
This requirement is NA for firewall. No fix required.