UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

The IDPS must terminate all tunnels prior to passing through the perimeter security zone.


Overview

Finding ID Version Rule ID IA Controls Severity
SRG-NET-000031-IDPS-NA SRG-NET-000031-IDPS-NA SRG-NET-000031-IDPS-NA_rule Medium
Description
Allowing traffic to bypass the security checkpoints such as firewalls and intrusion detection systems puts the network infrastructure and critical data at risk. Malicious traffic could enter the network undetected and attack a key IDPS or the server farm. Hence, it is imperative all tunneled traffic entering the network terminate prior to the content checking devices. This requirement applies to inbound unencrypted traffic.
STIG Date
IDPS Security Requirements Guide (SRG) 2012-03-08

Details

Check Text ( C-43178_chk )
This requirement does not apply to IDPS.
Fix Text (F-43178_fix)
Not applicable for IDPS. No fix required.