SV-104305r2_rule
V-94413
SRG-APP-000435-NDM-000315
SYMP-NM-000320
CAT I
10
Enable the Attack Detection function for the default settings or fine tune needed by site environment.
1. SSH into the ProxySG console, type "enable".
2. Enter the correct password, type "configure terminal".
3. Press "Enter", and then type "attack-detection".
4. Type "client" and press "Enter", type "enable-limits" and press "Enter".
See "Chapter 73: Preventing Denial of Service Attacks" in the ProxySG Administration Guide to understand the functionality before proceeding. Fine tune the default client limits if there is an operational impact.
Verify Attack Detection is enabled.
1. SSH into the ProxySG console, type "enable".
2. Enter the correct password, type "configure terminal".
3. Press "Enter", type "show attack-detection configuration".
4. Confirm that "client limits enabled" equals "true".
If Attack Detection is not enabled, this is a finding.
V-94413
False
SYMP-NM-000320
Verify Attack Detection is enabled.
1. SSH into the ProxySG console, type "enable".
2. Enter the correct password, type "configure terminal".
3. Press "Enter", type "show attack-detection configuration".
4. Confirm that "client limits enabled" equals "true".
If Attack Detection is not enabled, this is a finding.
M
3517