SV-93387r1_rule
V-78681
SRG-APP-000142
TANS-SV-000017
CAT II
10
Configure host-based and network firewall rules as required, to include Tanium Clients or Zone Clients over TCP port 17472, bi-directionally allow TCP traffic on port 17472 from any computer to be managed on a local area network to any other computer to be managed on the same local area network.
Consult with the Tanium System Administrator to verify which firewall is being used as a host-based firewall on the Tanium Server.
Access the host-based firewall configuration on the Tanium Server.
Validate rules exist, as required, to include:
Between Tanium Clients or Zone Clients over TCP port 17472, bi-directionally.
If a host-based firewall rule does not exist to allow TCP port 17472, bi-directionally, this is a finding.
Consult with the network firewall administrator and validate rules exist for the following:
Allow TCP traffic on port 17472 from any computer to be managed on a local area network to any other computer to be managed on the same local area network.
If a network firewall rule does not exist to allow TCP port 17472 from any managed computer to any other managed computer on the same local area network, this is a finding.
V-78681
False
TANS-SV-000017
Consult with the Tanium System Administrator to verify which firewall is being used as a host-based firewall on the Tanium Server.
Access the host-based firewall configuration on the Tanium Server.
Validate rules exist, as required, to include:
Between Tanium Clients or Zone Clients over TCP port 17472, bi-directionally.
If a host-based firewall rule does not exist to allow TCP port 17472, bi-directionally, this is a finding.
Consult with the network firewall administrator and validate rules exist for the following:
Allow TCP traffic on port 17472 from any computer to be managed on a local area network to any other computer to be managed on the same local area network.
If a network firewall rule does not exist to allow TCP port 17472 from any managed computer to any other managed computer on the same local area network, this is a finding.
M
3215