UCF STIG Viewer Logo

The Tanium Operating System (TanOS) must manage excess capacity, bandwidth, or other redundancy to limit the effects of information flooding types of Denial of Service (DoS) attacks.


Overview

Finding ID Version Rule ID IA Controls Severity
V-254851 TANS-OS-000455 SV-254851r866094_rule Medium
Description
DoS is a condition that occurs when a resource is not available for legitimate users. When this occurs, the organization either cannot accomplish its mission or must operate at degraded capacity. Managing excess capacity ensures sufficient capacity is available to counter flooding attacks. Employing increased capacity and service redundancy may reduce the susceptibility to some DoS attacks. Managing excess capacity may include, for example, establishing selected usage priorities, quotas, or partitioning.
STIG Date
Tanium 7.x Operating System on TanOS Security Technical Implementation Guide 2022-10-31

Details

Check Text ( C-58464r866092_chk )
1. Sign in to the TanOS console as a user with the tanadmin role.

2. Enter "A" to go to the "Appliance Configuration" menu.

3. Enter "A" to go to the "Security" menu.

4. Enter "X" to go to the "Advanced Security" menu.

5. If you see "DOS protection: disabled" in the middle of the screen, this is a finding.
Fix Text (F-58408r866093_fix)
1. Sign in to the TanOS console as a user with the tanadmin role.

2. Enter "A" to go to the "Appliance Configuration" menu.

3. Enter "A" to go to the "Security" menu.

4. Enter " to go to the "Advanced Security" menu.

5. Enter "6" to enable DoS protection. The screen updates with an enabled status.