SV-68617r1_rule
V-54371
SRG-NET-000319-ALG-000015
SRG-NET-000319-ALG-000015
CAT II
10
If the ALG performs content filtering as part of the traffic management functionality, configure the ALG to detect code injection attacks from being launched against data storage objects, including, at a minimum, databases, database records, queries, and fields.
If the ALG does not perform content filtering as part of the traffic management functions, this is not applicable.
Verify the ALG detects code injection attacks from being launched against data storage objects, including, at a minimum, databases, database records, queries, and fields.
If the ALG does not detect code injection attacks from being launched against data storage objects, including, at a minimum, databases, database records, queries, and fields, this is a finding.
V-54371
False
SRG-NET-000319-ALG-000015
If the ALG does not perform content filtering as part of the traffic management functions, this is not applicable.
Verify the ALG detects code injection attacks from being launched against data storage objects, including, at a minimum, databases, database records, queries, and fields.
If the ALG does not detect code injection attacks from being launched against data storage objects, including, at a minimum, databases, database records, queries, and fields, this is a finding.
M
2489