Check: SRG-APP-000259-MAPP-NA
Mobile Application SRG:
SRG-APP-000259-MAPP-NA
(in version v1 r1)
Title
Applications performing extrusion detection must be capable of denying network traffic and auditing internal users (or malicious code) posing a threat to external information systems. (Cat II impact)
Discussion
Detecting internal actions that may pose a security threat to external information systems is sometimes termed extrusion detection. Extrusion detection at the information system boundary includes the analysis of network traffic (incoming as well as, outgoing) looking for indications of an internal threat to the security of external systems. Rationale for non-applicability: The requirement for application sandboxing precludes applications from providing extrusion detection for other applications. If an application were granted the ability to perform this function, the application could perform a man-in-the-middle attack on other applications running on the device.
Check Content
This requirement is NA for the MAPP SRG.
Fix Text
The requirement is NA. No fix is required.
Additional Identifiers
Rule ID: SV-46979r1_rule
Vulnerability ID: V-35692
Group Title:
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-001115 |
The information system, at managed interfaces, denies network traffic and audits internal users (or malicious code) posing a threat to external information systems. |
Controls
Number | Title |
---|---|
No controls are assigned to this check |