STIGQter STIGQter: STIG Summary: ForeScout CounterACT ALG Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 26 Jan 2018:

If user authentication services are provided, CounterACT must be configured with a pre-established trust relationship and mechanisms with a central directory service that validates user account access authorizations and privileges.

DISA Rule

SV-90625r1_rule

Vulnerability Number

V-75937

Group Title

SRG-NET-000138-ALG-000088

Rule Version

CACT-AG-000006

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

If user authentication service is provided by CounterACT, configure the use of a central directory service for user authentication.

Obtain configuration information for a directory service (e.g., Active Directory or LDAP) that validates user account access authorizations and privileges.

1. Connect to CounterACT’s Admin Console and log in.
2. Go to Tools >> Options >> User Directory.
3. Verify the User Directory configured for Authentication. Select the configured directory (or directories) and on the General Tab ensure the "Use for Authentication" radio button is selected.

Check Contents

If CounterACT does not provide user authentication intermediary services, this is not applicable.

Verify CounterACT is configured for NAC services authentication.

1. Connect to CounterACT’s Admin Console and log in.
2. Go to Tools >> Options >> User Directory.
3. Verify the User Directory configured for Authentication. Select the configured directory (or directories) and on the General Tab ensure the "Use for Authentication" radio button is selected.

Verify with site representatives that the directory service validates user account access authorizations and privileges.

If CounterACT does not use a central directory service to validate user account access authorizations and privileges, this is a finding.

Vulnerability Number

V-75937

Documentable

False

Rule Version

CACT-AG-000006

Severity Override Guidance

If CounterACT does not provide user authentication intermediary services, this is not applicable.

Verify CounterACT is configured for NAC services authentication.

1. Connect to CounterACT’s Admin Console and log in.
2. Go to Tools >> Options >> User Directory.
3. Verify the User Directory configured for Authentication. Select the configured directory (or directories) and on the General Tab ensure the "Use for Authentication" radio button is selected.

Verify with site representatives that the directory service validates user account access authorizations and privileges.

If CounterACT does not use a central directory service to validate user account access authorizations and privileges, this is a finding.

Check Content Reference

M

Target Key

3223

Comments