Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-39434 | ENTD0040 | SV-51292r1_rule | ECSC-1 | Medium |
Description |
---|
It is important to restrict administrative access to the supporting network infrastructure and systems in the test and development environment, as it reduces the risk of data theft or interception from an attacker on the operational network. |
STIG | Date |
---|---|
Test and Development Zone A Security Technical Implementation Guide | 2015-12-17 |
Check Text ( C-46708r2_chk ) |
---|
Review the network diagrams to determine whether a management network has been established to manage the network infrastructure and systems supporting the test and development environment. If a management network has not been established to manage the test and development environment infrastructure, this is a finding. |
Fix Text (F-44447r2_fix) |
---|
Engineer a management network solution and document it within the test and development network diagrams. |