Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-34527 | SRG-NET-000061-IDPS-NA | SV-45369r1_rule | Medium |
Description |
---|
Remote access services enable users outside of the enclave to have access to data and services within the private network. In many instances these connections traverse the Internet. Monitoring of remote access sessions allows organizations to audit user activities and to ensure compliance with the remote access policy. Unless restrictions are put in place, a user connecting to the LAN via remote access can access/perform everything he/she could access/perform as those connected internally. Monitoring will ensure unauthorized access to the enclave’s resources and data will not go undetected. However, monitoring and control of remote access methods is not a function of the IDPS. |
STIG | Date |
---|---|
Intrusion Detection and Prevention Systems (IDPS) Security Requirements Guide | 2012-11-19 |
Check Text ( C-42718r1_chk ) |
---|
This requirement is NA for IDPS. No fix required. |
Fix Text (F-38766r1_fix) |
---|
This requirement is NA for IDPS. No fix required. |