Check: ENTD0040
Test and Development Zone A STIG:
ENTD0040
(in versions v1 r6 through v1 r3)
Title
Network infrastructure and systems supporting the test and development environment must be managed from a management network. (Cat II impact)
Discussion
It is important to restrict administrative access to the supporting network infrastructure and systems in the test and development environment, as it reduces the risk of data theft or interception from an attacker on the operational network.
Check Content
Review the network diagrams to determine whether a management network has been established to manage the network infrastructure and systems supporting the test and development environment. If a management network has not been established to manage the test and development environment infrastructure, this is a finding.
Fix Text
Engineer a management network solution and document it within the test and development network diagrams.
Additional Identifiers
Rule ID: SV-51292r1_rule
Vulnerability ID: V-39434
Group Title: ENTD0040 - The test and development infrastructure is not managed through management network.
Expert Comments
CCIs
Number | Definition |
---|---|
No CCIs are assigned to this check |
Controls
Number | Title |
---|---|
No controls are assigned to this check |