SV-104525r1_rule
V-94695
SRG-APP-000142-NDM-000245
SYMP-NM-000220
CAT I
10
By default, Symantec ProxySG has only HTTPS and SSH enabled for management services. SNMP may also be enabled if needed to support the architecture. "HTTP-Console" is not approved for use in DoD.
1. Log on to Web Management Console.
2. Click Configuration >> Services >> Management Services.
3. Uncheck "enabled" next to unapproved management services such as "HTTP-Console".
4. Click "Apply".
Verify unauthorized management protocols are not used on the Symantec ProxySG.
1. Log on to Web Management Console.
2. Click Configuration >> Services >> Management Services.
3. Ensure that only approved management services are enabled. "HTTP-Console", in general, should be disabled.
If Symantec ProxySG does not use only approved management services protocols, this is a finding.
V-94695
False
SYMP-NM-000220
Verify unauthorized management protocols are not used on the Symantec ProxySG.
1. Log on to Web Management Console.
2. Click Configuration >> Services >> Management Services.
3. Ensure that only approved management services are enabled. "HTTP-Console", in general, should be disabled.
If Symantec ProxySG does not use only approved management services protocols, this is a finding.
M
3517