STIGQter STIGQter: STIG Summary: ForeScout CounterACT NDM Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 12 Sep 2017:

CounterACT must limit privileges to change the software resident within software libraries.

DISA Rule

SV-90921r1_rule

Vulnerability Number

V-76233

Group Title

SRG-APP-000133-NDM-000244

Rule Version

CACT-NM-000024

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure CounterACT to prevent access to change the software resident within software libraries for unauthorized personnel.

1. Log on to the CounterACT Console and select Tools >> Options >> Console User Profiles.
2. Select the non-privileged user profiles and then select "Edit".
3. Verify the users do not have the "Plugin Management" and "Software Upgrade" options selected.

Check Contents

Ask if there are users defined in CounterACT that are not authorized to change the software libraries.

Verify that Administrator privileges have been restricted for these users.

This is verified by reviewing the administrator account profiles and auditing the assigned privilege for updated CounterACT software.

1. Log on to the CounterACT Console and select Tools >> Options >> Console User Profiles.
2. Select the non-privileged user profiles and then select "Edit".
3. Verify the users do not have the "Plugin Management" and "Software Upgrade" options selected.

If CounterACT is not configured to limit privileges to change the software resident within software libraries for unauthorized users, this is a finding.

Vulnerability Number

V-76233

Documentable

False

Rule Version

CACT-NM-000024

Severity Override Guidance

Ask if there are users defined in CounterACT that are not authorized to change the software libraries.

Verify that Administrator privileges have been restricted for these users.

This is verified by reviewing the administrator account profiles and auditing the assigned privilege for updated CounterACT software.

1. Log on to the CounterACT Console and select Tools >> Options >> Console User Profiles.
2. Select the non-privileged user profiles and then select "Edit".
3. Verify the users do not have the "Plugin Management" and "Software Upgrade" options selected.

If CounterACT is not configured to limit privileges to change the software resident within software libraries for unauthorized users, this is a finding.

Check Content Reference

M

Target Key

3225

Comments