SV-80917r1_rule
V-66427
SRG-NET-000392-IDPS-00216
JUSX-IP-000024
CAT II
10
Configure an attack group for "ROOT" attacks in the signature database which are recommended. Consult the Junos Security Intelligence Center IDP signatures website for a list and details of each attack, along with recommended action upon detection. Then add the attack group to a policy.
Specify the attack group as match criteria in an IDP policy rule.
Verify an attack group or rule is configured.
[edit]
show security idp policies
If an attack group or rules are not configured to detect root-level intrusion attacks or the match condition is not configured for an alert, this is a finding.
V-66427
False
JUSX-IP-000024
Verify an attack group or rule is configured.
[edit]
show security idp policies
If an attack group or rules are not configured to detect root-level intrusion attacks or the match condition is not configured for an alert, this is a finding.
M
3037