SV-206567r617447_rule
V-206567
SRG-APP-000224
SRG-APP-000224-DB-000384
CAT II
10
Utilize a DBMS product that can provide demonstrably effective protection against man-in-the-middle attacks that guess at session identifier values.
Configure DBMS settings to enable protections against man-in-the-middle attacks that guess at session identifier values.
Review DBMS vendor documentation and system behavior (and if necessary, consult vendor representatives) to determine whether the DBMS can provide demonstrably effective protection against man-in-the-middle attacks that guess at session identifier values.
If not, this is a finding.
Review DBMS settings to determine whether protections against man-in-the-middle attacks that guess at session identifier values are enabled.
If they are not, this is a finding.
V-206567
False
SRG-APP-000224-DB-000384
Review DBMS vendor documentation and system behavior (and if necessary, consult vendor representatives) to determine whether the DBMS can provide demonstrably effective protection against man-in-the-middle attacks that guess at session identifier values.
If not, this is a finding.
Review DBMS settings to determine whether protections against man-in-the-middle attacks that guess at session identifier values are enabled.
If they are not, this is a finding.
M
2902