STIGQter STIGQter: STIG Summary: Juniper SRX SG NDM Security Technical Implementation Guide Version: 2 Release: 1 Benchmark Date: 23 Apr 2021:

For nonlocal maintenance sessions, the Juniper SRX Services Gateway must explicitly deny the use of J-Web.

DISA Rule

SV-223237r513400_rule

Vulnerability Number

V-223237

Group Title

SRG-APP-000142-NDM-000245

Rule Version

JUSX-DM-000167

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Remove the web-management service.

[edit]
delete system services web-management

Check Contents

Verify web-management is not enabled.

[edit]
show system services web-management

If a stanza exists that configures web-management service options, this is a finding.

Vulnerability Number

V-223237

Documentable

False

Rule Version

JUSX-DM-000167

Severity Override Guidance

Verify web-management is not enabled.

[edit]
show system services web-management

If a stanza exists that configures web-management service options, this is a finding.

Check Content Reference

M

Target Key

4098

Comments