Details
A properly configured Host-based Intrusion Detection System (HIDS) or Host-based Intrusion Prevention System (HIPS) provides another level of defense against unauthorized access to critical servers. With proper configuration and logging enabled, such a system can stop and/or alert for many attempts to gain unauthorized access to resources.
NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.
Solution
Install a HIDS or HIPS on each server.
Supportive Information
The following resource is also helpful.
This security hardening control applies to the following category of controls within NIST 800-53: Configuration Management.This control applies to the following type of system Windows.
References
- 800-53|CM-6b.
- CAT|II
- CCI|CCI-000366
- Rule-ID|SV-224830r793223_rule
- STIG-ID|WN16-00-000140
- STIG-Legacy|SV-87897
- STIG-Legacy|V-73245
- Vuln-ID|V-224830