UCF STIG Viewer Logo

SEL-2740S NDM Security Technical Implementation Guide


Overview

Date Finding Count (13)
2019-05-06 CAT I (High): 1 CAT II (Med): 12 CAT III (Low): 0
STIG Description
This Security Technical Implementation Guide is published as a tool to improve the security of Department of Defense (DoD) information systems. The requirements are derived from the National Institute of Standards and Technology (NIST) 800-53 and related documents. Comments or proposed revisions to this document should be sent via email to the following address: disa.stig_spt@mail.mil.

Available Profiles



Findings (MAC III - Administrative Public)

Finding ID Severity Title
V-92303 High The SEL-2740S must be adopted by OTSDN Controllers for secure communication identifiers and initial trust for configuration of remote maintenance and diagnostic communications.
V-92295 Medium The SEL-2740S must be configured to send log data to a Syslog server or collected by another parent OTSDN Controller.
V-92297 Medium The SEL-2740S must be configured to compare internal information system clocks at least every 24 hours with an authoritative time server.
V-92291 Medium The SEL-2740S must be configured to create log records for DoD-defined events.
V-92293 Medium The SEL-2740S must alert the ISSO and SA (at a minimum) in the event of an audit processing failure.
V-92301 Medium The SEL-2740S must be configured to maintain internal system clocks with a backup authoritative time server.
V-94591 Medium The SEL-2740S must employ automated mechanisms to assist in the tracking of security incidents.
V-92299 Medium The SEL-2740S must be configured to synchronize internal system clocks with an authoritative time source.
V-92309 Medium The SEL-2740S must be configured to establish trust relationships with parent OTSDN Controller(s).
V-92305 Medium The SEL-2740S must be configured to permit the maintenance and diagnostics communications to specified OTSDN Controller(s).
V-94589 Medium The SEL-2740S must authenticate Network Time Protocol sources using authentication that is cryptographically based.
V-92311 Medium The SEL-2740S must be configured to send log data to a syslog server for the purpose of forwarding alerts to the administrators and the ISSO.
V-92307 Medium The SEL-2740S must be adopted by OTSDN Controller(s) and obtain its public key certificates from an appropriate certificate policy through an approved service provider.