SV-104271r1_rule
V-94317
SRG-NET-000362-ALG-000112
SYMP-AG-000520
CAT II
10
Configure denial-of-service attack detection/mitigation.
1. SSH into the ProxySG console and type "enable".
2. Enter the correct password and type "config".
3. Press "Enter" and type "attack-detection".
4. Type "client", press "Enter", type "enable-limits", and press "Enter".
View the denial-of-service attack detection/mitigation configuration.
1. SSH into the ProxySG console and type "enable".
2. Enter the correct password and type "config".
3. Press "Enter" and type "show attack-detection configuration".
4. Verify that "client limits enabled" equals "true".
If Symantec ProxySG providing content filtering does not protect against known and unknown types of Denial of Service (DoS) attacks by employing rate-based attack prevention behavior analysis, this is a finding.
V-94317
False
SYMP-AG-000520
View the denial-of-service attack detection/mitigation configuration.
1. SSH into the ProxySG console and type "enable".
2. Enter the correct password and type "config".
3. Press "Enter" and type "show attack-detection configuration".
4. Verify that "client limits enabled" equals "true".
If Symantec ProxySG providing content filtering does not protect against known and unknown types of Denial of Service (DoS) attacks by employing rate-based attack prevention behavior analysis, this is a finding.
M
3515