Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
SRG-NET-000024-RTR-000017 | SRG-NET-000024-RTR-000017 | SRG-NET-000024-RTR-000017_rule | Medium |
Description |
---|
Identifying source and destination addresses for information flows within the network allows forensic reconstruction of events when required, and increases policy compliance by attributing policy violations to specific individuals. Means to enforce this enhancement include ensuring the router distinguishes between information networks and organizations, and between specific network components or individuals involved in sending and receiving information. Additional means to enforce this enhancement includes ensuring the router authenticates the source involved in sending information. |
STIG | Date |
---|---|
Router Security Requirements Guide | 2013-07-30 |
Check Text ( C-SRG-NET-000024-RTR-000017_chk ) |
---|
Verify the router uses a unique identifier (e.g., IP address) for the source domain to track and log information transfer sessions between the router and other network elements. View log entries to verify the information tracked includes a unique identifier for network elements involved in information transfer. If a unique identifier for each component is not logged for information transfer sessions, this is a finding. |
Fix Text (F-SRG-NET-000024-RTR-000017_fix) |
---|
Configure the router to log information transfer events with a unique identifier to be utilized in tracking and logging information transfer sessions between the router and other network elements. |