STIGQter STIGQter: STIG Summary: DBN-6300 IDPS Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 12 Sep 2017:

When implemented for protection of the database tier, the DBN-6300 must be logically connected for maximum database traffic visibility.

DISA Rule

SV-79515r1_rule

Vulnerability Number

V-65025

Group Title

SRG-NET-000512-IDPS-00194

Rule Version

DBNW-IP-000060

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Evaluate the site architecture to determine where the optimum logical connections would provide maximum database visibility.

Disconnect the network taps from the incorrectly attached network ports. Reconnect the correctly identified taps.

Navigate to the Admin >> Capture >> Port Configuration menu.

Click on "Port Enabled", if it is not already enabled, to ensure that the DBN-6300 will see and capture traffic.

Navigate to the "Database" tab and choose "Service Discovery".

Verify that database services are beginning to appear on the page.

Check Contents

Ask the site representative if the DBN-6300 is used to protect the database tier.

If the DBN-6300 is not used to protect the database tier, this is not a finding.

Ask the site for documentation of which database tier is required to be protected.

Verify connectivity of the capture ports to the correct database tier that is required to be protected.

If the DBN-6300 is not connected to protect the database tier for maximum database traffic visibility of the organization's databases, this is a finding.

Vulnerability Number

V-65025

Documentable

False

Rule Version

DBNW-IP-000060

Severity Override Guidance

Ask the site representative if the DBN-6300 is used to protect the database tier.

If the DBN-6300 is not used to protect the database tier, this is not a finding.

Ask the site for documentation of which database tier is required to be protected.

Verify connectivity of the capture ports to the correct database tier that is required to be protected.

If the DBN-6300 is not connected to protect the database tier for maximum database traffic visibility of the organization's databases, this is a finding.

Check Content Reference

M

Target Key

2949

Comments