Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
SRG-NET-000274-NDM-000186 | SRG-NET-000274-NDM-000186 | SRG-NET-000274-NDM-000186_rule | Low |
Description |
---|
Predictable failure prevention requires organizational planning to address system failure issues. If components key to maintaining the system's security fail to function, the system could continue operating in an insecure state. If appropriate actions are not taken when a network device failure occurs, a denial of service condition may occur which could result in mission failure since the network would be operating without a critical security monitoring and prevention function. Upon detecting a failure of network device security components, the network device must activate a system alert message, send an alarm, or shut down. |
STIG | Date |
---|---|
Network Device Management Security Requirements Guide | 2013-07-30 |
Check Text ( C-SRG-NET-000274-NDM-000186_chk ) |
---|
Verify the system is configured to automatically send an administrator an alert when the network device is unexpectedly taken offline or fails. A keep-alive signal or monitoring functionality should be used to detect such failures from a central management tool. If the network device (or other network device) does not activate an organizationally defined alarm when a network device system component failure is detected, this is a finding. |
Fix Text (F-SRG-NET-000274-NDM-000186_fix) |
---|
Configure the network device (or other network device such as the log aggregation server) to activate an organizationally defined alarm when a network device system component failure is detected. |