GEN005380 - If the system is a Network Management System (NMS) server, it must only run the NMS and any software required by the NMS.

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Installing extraneous software on a system designated as a dedicated Network Management System (NMS) server poses a security threat to the system and the network. Should an attacker gain access to the NMS through unauthorized software, the entire network may be susceptible to malicious activity.
NOTE: Nessus has not performed this query, and this check is only provided for informational purposes.

Solution

Ensure only authorized software is loaded on a designated NMS server. Authorized software is limited to the NMS software itself, a database management system for the NMS server if necessary, and network management software.

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R17_STIG.zip

Item Details

References: CAT|II, CCI|CCI-001208, Group-ID|V-4392, Rule-ID|SV-37708r1_rule, STIG-ID|GEN005380

Plugin: Unix

Control ID: 0644ecc151052489d5edb7b8fb735f7106898ed67cf8981d1cf4cc56da6dde3b