STIGQter STIGQter: STIG Summary: Trend Micro Deep Security 9.x Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 26 Feb 2016:

Trend Deep Security must ensure users are authenticated with an individual authenticator prior to using a group authenticator.

DISA Rule

SV-80403r1_rule

Vulnerability Number

V-65913

Group Title

SRG-APP-000153

Rule Version

TMDS-00-006030

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Configure the Trend Deep Security server to authenticate users with an individual authenticator prior to using a group authenticator.

Navigate to Administration >> User Management >> Users and click "Synchronize with Directory".

Under Server, enter the following information:

Server Address (IP of the AD Server)
Access Method (UserID/Password StartTLS)
UserName (Authorized, site-defined, service account used for synchronizing with Trend Deep Security)
Password

Click "Next".

Select the authorized AD group used for managing the Trend Deep Security accounts, and Click "Next".

Under "New User" Options, select the appropriate Role, click "Next".

Click "Finish".

Check Contents

Review the Trend Deep Security server to ensure users are authenticated with an individual authenticator prior to using a group authenticator.

Review the settings to ensure identify management is being performed through the organizations Active Directory.

Navigate to Administration >> User Management >> Users and click "Synchronize with Directory".

Select "Re-Synchronize (Using previous settings)", and click "Next".

If the synchronization fails, this is a finding.

Vulnerability Number

V-65913

Documentable

False

Rule Version

TMDS-00-006030

Severity Override Guidance

Review the Trend Deep Security server to ensure users are authenticated with an individual authenticator prior to using a group authenticator.

Review the settings to ensure identify management is being performed through the organizations Active Directory.

Navigate to Administration >> User Management >> Users and click "Synchronize with Directory".

Select "Re-Synchronize (Using previous settings)", and click "Next".

If the synchronization fails, this is a finding.

Check Content Reference

M

Target Key

2955

Comments