SV-77439r1_rule
V-62949
SRG-APP-000142-NDM-000245
RICX-DM-000096
CAT II
10
Configure RiOS to prohibit the use of all unnecessary and/or nonsecure functions, ports, protocols, and/or services , as defined in the PPSM CAL and vulnerability assessments.
Navigate to the device Management Console
Navigate to Configure >> Security >> Management ACL
Click "Add a New Rule"
Set the values in "Management ACL Settings" to match requirements defined in the PPSM CAL and vulnerability assessments
Check the field "Enable Management ACL"
Click "Apply"
Navigate to the top of the web page and click "Save" to save these settings permanently
Verify that RiOS is configured to prohibit the use of all unnecessary and/or nonsecure functions, ports, protocols, and/or services as defined in the PPSM CAL and vulnerability assessments.
Navigate to the device Management Console
Navigate to Configure >> Security >> Management ACL
Verify that this page contains all unnecessary and/or nonsecure functional, ports, protocols, and/or services as defined in the PPSM CAL and vulnerability assessments.
Verify that "Enable Management ACL" is checked.
If no PPSM CAL or vulnerability assessment information is presented on this page or "Enable Management ACL" is not checked, this is a finding.
V-62949
False
RICX-DM-000096
Verify that RiOS is configured to prohibit the use of all unnecessary and/or nonsecure functions, ports, protocols, and/or services as defined in the PPSM CAL and vulnerability assessments.
Navigate to the device Management Console
Navigate to Configure >> Security >> Management ACL
Verify that this page contains all unnecessary and/or nonsecure functional, ports, protocols, and/or services as defined in the PPSM CAL and vulnerability assessments.
Verify that "Enable Management ACL" is checked.
If no PPSM CAL or vulnerability assessment information is presented on this page or "Enable Management ACL" is not checked, this is a finding.
M
2931