STIGQter STIGQter: STIG Summary: Tanium 7.3 Security Technical Implementation Guide Version: 2 Release: 1 Benchmark Date: 22 Jan 2021:

Tanium Server files must be excluded from on-access antivirus actions.

DISA Rule

SV-234108r612749_rule

Vulnerability Number

V-234108

Group Title

SRG-APP-000516

Rule Version

TANS-SV-000040

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Implement exclusion policies within the antivirus software solution to prevent on-access scanning of Tanium Server program files.

Check Contents

Consult with the Tanium System Administrator to determine the antivirus software used on the Tanium Server.

Review the settings of the antivirus software.

Validate exclusions exist which exclude the Tanium program files from being scanned by antivirus on-access scans.

If exclusions do not exist, this is a finding.

Vulnerability Number

V-234108

Documentable

False

Rule Version

TANS-SV-000040

Severity Override Guidance

Consult with the Tanium System Administrator to determine the antivirus software used on the Tanium Server.

Review the settings of the antivirus software.

Validate exclusions exist which exclude the Tanium program files from being scanned by antivirus on-access scans.

If exclusions do not exist, this is a finding.

Check Content Reference

M

Target Key

5259

Comments