SV-80903r1_rule
V-66413
SRG-NET-000319-IDPS-00184
JUSX-IP-000014
CAT II
10
Configure an attack group for "INJ" and "CMDEXEC" attacks in the signature database which are recommended. Consult the Junos Security Intelligence Center IDP signatures website for a list and details of each attack, along with recommended action upon detection. Then add the attack group to a policy.
Specify the attack group as match criteria in an IDP policy rule.
Verify an attack group is configured.
[edit]
show security idp policies
If an attack group or rule(s) is not implemented to monitor for code injection attacks that could be launched against data storage objects, this is a finding.
V-66413
False
JUSX-IP-000014
Verify an attack group is configured.
[edit]
show security idp policies
If an attack group or rule(s) is not implemented to monitor for code injection attacks that could be launched against data storage objects, this is a finding.
M
3037