UCF STIG Viewer Logo

The network device must activate an organizationally defined alarm when a system component failure is detected.


Overview

Finding ID Version Rule ID IA Controls Severity
SRG-NET-000274-NDM-000186 SRG-NET-000274-NDM-000186 SRG-NET-000274-NDM-000186_rule Low
Description
Predictable failure prevention requires organizational planning to address system failure issues. If components key to maintaining the system's security fail to function, the system could continue operating in an insecure state. If appropriate actions are not taken when a network device failure occurs, a denial of service condition may occur which could result in mission failure since the network would be operating without a critical security monitoring and prevention function. Upon detecting a failure of network device security components, the network device must activate a system alert message, send an alarm, or shut down.
STIG Date
Network Device Management Security Requirements Guide 2013-07-30

Details

Check Text ( C-SRG-NET-000274-NDM-000186_chk )
Verify the system is configured to automatically send an administrator an alert when the network device is unexpectedly taken offline or fails. A keep-alive signal or monitoring functionality should be used to detect such failures from a central management tool.

If the network device (or other network device) does not activate an organizationally defined alarm when a network device system component failure is detected, this is a finding.
Fix Text (F-SRG-NET-000274-NDM-000186_fix)
Configure the network device (or other network device such as the log aggregation server) to activate an organizationally defined alarm when a network device system component failure is detected.