Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
SRG-NET-000031-IDPS-NA | SRG-NET-000031-IDPS-NA | SRG-NET-000031-IDPS-NA_rule | Medium |
Description |
---|
Allowing traffic to bypass the security checkpoints such as firewalls and intrusion detection systems puts the network infrastructure and critical data at risk. Malicious traffic could enter the network undetected and attack a key IDPS or the server farm. Hence, it is imperative all tunneled traffic entering the network terminate prior to the content checking devices. This requirement applies to inbound unencrypted traffic. |
STIG | Date |
---|---|
IDPS Security Requirements Guide (SRG) | 2012-03-08 |
Check Text ( C-43178_chk ) |
---|
This requirement does not apply to IDPS. |
Fix Text (F-43178_fix) |
---|
Not applicable for IDPS. No fix required. |