UCF STIG Viewer Logo

The network element must connect to external networks only through managed interfaces consisting of boundary protection devices arranged in accordance with organizational security architecture.


Overview

Finding ID Version Rule ID IA Controls Severity
SRG-NET-000206-IDPS-NA SRG-NET-000206-IDPS-NA SRG-NET-000206-IDPS-NA_rule Medium
Description
The firewall will build a state to allow return traffic for all initiated traffic that was allowed outbound. Monitoring and filtering the outbound traffic adds a layer of protection to the enclave, in addition to being a good Internet citizen by preventing your network from being used as an attack base. All network elements must be configured to ensure all traffic is forwarded through the perimeter security infrastructure when sending traffic to external destinations.
STIG Date
IDPS Security Requirements Guide (SRG) 2012-03-08

Details

Check Text ( C-43372_chk )
This requirement does not apply to IDPS.
Fix Text (F-43372_fix)
Not applicable for IDPS. No fix required.