GEN006640 - The system must use and update a DoD-approved virus scan program.

Information

Virus scanning software can be used to protect a system from penetration from computer viruses and to limit their spread through intermediate systems.

The virus scanning software should be configured to perform scans dynamically on accessed files. If this capability is not available, the system must be configured to scan, at a minimum, all altered files on the system on a daily basis.

If the system processes inbound SMTP mail, the virus scanner must be configured to scan all received mail.

Solution

Install a DoD-approved command-line virus scan tool, or an appropriate alternative. Ensure the virus signature definition files are no older than 7 days. Configure the system to run a virus scan on altered files dynamically or daily. If daily scans impede operations, justify, document, and obtain IAO approval for alternate scheduling.

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R17_STIG.zip

Item Details

References: CAT|II, CCI|CCI-001668, Group-ID|V-12765, Rule-ID|SV-37760r2_rule, STIG-ID|GEN006640

Plugin: Unix

Control ID: 0b34d1cceaa8fb5b158a5f033c1677293a7633752dc54cb6d4d10e9ed0a43ffd