STIGQter STIGQter: STIG Summary: VMW vRealize Automation 7.x PostgreSQL Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 28 Sep 2018:

The vRA PostgreSQL database security updates and patches must be installed in a timely manner in accordance with site policy.

DISA Rule

SV-100049r1_rule

Vulnerability Number

V-89399

Group Title

SRG-APP-000456-DB-000390

Rule Version

VRAU-PG-000330

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Ensure that patches and updates from an authoritative source are applied at least within 24 hours after they have been received.

Check Contents

Obtain supporting documentation from the ISSO.

Review the policies and procedures used to ensure that all security-related upgrades are being installed within the configured time period directed by an authoritative source.

If all security-related upgrades are not being installed within the configured time period directed by an authoritative source, this is a finding.

Vulnerability Number

V-89399

Documentable

False

Rule Version

VRAU-PG-000330

Severity Override Guidance

Obtain supporting documentation from the ISSO.

Review the policies and procedures used to ensure that all security-related upgrades are being installed within the configured time period directed by an authoritative source.

If all security-related upgrades are not being installed within the configured time period directed by an authoritative source, this is a finding.

Check Content Reference

M

Target Key

3443

Comments