STIGQter STIGQter: STIG Summary: Symantec ProxySG ALG Security Technical Implementation Guide Version: 1 Release: 3 Benchmark Date: 24 Apr 2020:

Symantec ProxySG providing user access control intermediary services must display the Standard Mandatory DoD-approved Notice and Consent Banner before granting access to the network.

DISA Rule

SV-104189r2_rule

Vulnerability Number

V-94235

Group Title

SRG-NET-000041-ALG-000022

Rule Version

SYMP-AG-000100

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the Standard Mandatory DoD Banner to be displayed.

1. Log on to the Web Management Console.
2. Click Configuration >> Visual Policy Manager.
3. Click "Launch". While in the Visual Policy Manager, create a new Web Access Layer, positioned in front (farthest left) of all other existing Web Access Layers and perform the following:
i. Click "edit" and select "add rule".
ii. Right-click the "Actions" field of the new rule and select "set". Click "New" and select "NotifyUser" from the list and click "OK".
iii. Input the correct banner text in the "Body" field and click "OK".
iv. Click File >> Install Policy on SG Appliance.

Check Contents

Verify that the Standard Mandatory DoD Banner is configured.

1. Log on to the Web Management Console.
2. Click Configuration >> Visual Policy Manager.
3. Click "Launch". While in the Visual Policy Manager, ensure that the first Web Access Layer (furthest left) contains a single rule with a "Notify User" Action that contains the DoD banner text.
4. Right-click the "Notify User" action, select "Edit", and verify that the correct banner is specified in the "Body" field.
5. Verify the banner contains the exact DoD text.


If Symantec ProxySG providing user access control intermediary services does not display the Standard Mandatory DoD-approved Notice and Consent Banner before granting access to the network, this is a finding.

Vulnerability Number

V-94235

Documentable

False

Rule Version

SYMP-AG-000100

Severity Override Guidance

Verify that the Standard Mandatory DoD Banner is configured.

1. Log on to the Web Management Console.
2. Click Configuration >> Visual Policy Manager.
3. Click "Launch". While in the Visual Policy Manager, ensure that the first Web Access Layer (furthest left) contains a single rule with a "Notify User" Action that contains the DoD banner text.
4. Right-click the "Notify User" action, select "Edit", and verify that the correct banner is specified in the "Body" field.
5. Verify the banner contains the exact DoD text.


If Symantec ProxySG providing user access control intermediary services does not display the Standard Mandatory DoD-approved Notice and Consent Banner before granting access to the network, this is a finding.

Check Content Reference

M

Target Key

3515

Comments