SV-80367r1_rule
V-65877
SRG-APP-000090
TMDS-00-000065
CAT II
10
Configure the Trend Deep Security server to only allow the ISSM (or individuals or roles appointed by the ISSM) to select which auditable events are to be audited.
Configure the assigned permissions for user roles within the
Administration >> User Management >> Roles >> Properties >> Other Rights. Set the following to "View Only"
Alerts
Alert Configuration
Integrity Monitoring
Log Inspection Rule
Review the Trend Deep Security server to ensure only the ISSM (or individuals or roles appointed by the ISSM) is allowed to select which auditable events are to be audited.
Verify the user roles and assigned permissions within the Administration >> User Management >> Roles >> Properties >> Other Rights.
If a user role (e.g., Auditor) has any "View Only" for Alerts, Alert Configuration, Integrity Monitoring, and Log Inspection Rules, this is a finding.
V-65877
False
TMDS-00-000065
Review the Trend Deep Security server to ensure only the ISSM (or individuals or roles appointed by the ISSM) is allowed to select which auditable events are to be audited.
Verify the user roles and assigned permissions within the Administration >> User Management >> Roles >> Properties >> Other Rights.
If a user role (e.g., Auditor) has any "View Only" for Alerts, Alert Configuration, Integrity Monitoring, and Log Inspection Rules, this is a finding.
M
2955