FireEye – FireEye Web MPS version Details The product version should be reviewed. This security hardening control applies to the following category of controls within NIST...
FireEye – AAA lockout settings apply to the ‘admin’ user Details Password-guessing attacks against the ‘admin’ account may succeed quickly if account lockouts are not enabled. Solution Edit the configuration...
FireEye – Greylists are enabled Details Greylists provide control over the priority of workorders for known IP addresses and URLs. Greylists contain files that contain...
FireEye – AAA lockouts occur after at most 5 failures Details Authentication through AAA for the account will be blocked during a lockout. Setting this too high can allow faster...
FireEye – Greylist URL list Details The list of greylist URLs and their contents should be reviewed. This security hardening control applies to the following...
FireEye – AAA tries local authentication first Details The appliance authenticates locally first to obviate the risk of local appliance account access issues. If not successful it...
FireEye – Guest images Details The available and installed guest images should be reviewed. Ensure the selection of enabled images matches the protected organization...
FireEye – AAA user mapping default Details When a user is authenticated remotely but is not mapped to a specific local account they will be mapped...
FireEye – AAA user mapping source Details When a user is authenticated remotely they are mapped to a local user. This local user can be an...
FireEye – A scheduled system backup job is configured Details A backup of the FireEye database includes configuration settings not found in ‘show running-config full’ and should be done...