STIGQter STIGQter: STIG Summary: Tanium 7.0 Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 27 July 2018:

Tanium endpoint files must be excluded from on-access antivirus actions.

DISA Rule

SV-93297r1_rule

Vulnerability Number

V-78591

Group Title

SRG-APP-000516

Rule Version

TANS-CL-000008

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Implement exclusion policies within the antivirus software solution to exclude the on-access scanning of Tanium client program files.

Check Contents

Consult with the Tanium System Administrator to determine the antivirus used on the Tanium clients.

Review the settings of the antivirus software.

Validate exclusions exist that exclude the Tanium program files from being scanned by antivirus on-access scans.

If exclusions do not exist, this is a finding.

Vulnerability Number

V-78591

Documentable

False

Rule Version

TANS-CL-000008

Severity Override Guidance

Consult with the Tanium System Administrator to determine the antivirus used on the Tanium clients.

Review the settings of the antivirus software.

Validate exclusions exist that exclude the Tanium program files from being scanned by antivirus on-access scans.

If exclusions do not exist, this is a finding.

Check Content Reference

M

Target Key

3215

Comments