Check: SRG-APP-000245-MAPP-NA
Mobile Application SRG:
SRG-APP-000245-MAPP-NA
(in version v1 r1)
Title
Applications must protect against or limit the effects of the organization-defined or referenced types of Denial of Service (DoS) attacks. (Cat II impact)
Discussion
A variety of technologies exist to limit, or in some cases, eliminate the effects of DoS attacks. For example, boundary protection devices can filter certain types of packets to protect devices on an organization's internal network from being directly affected by DoS attacks. Employing increased capacity and bandwidth combined with service redundancy may reduce the susceptibility to some DoS attacks. Rationale for non-applicability: Mobile applications are lightweight and are not expected to have embedded mechanisms to protect against DoS, most of which cannot be known prior to the exploited vulnerability. The mobile operating system has a variety of mechanisms, including application sandboxing and memory management, to protect against application-based DoS attacks.
Check Content
This requirement is NA for the MAPP SRG.
Fix Text
The requirement is NA. No fix is required.
Additional Identifiers
Rule ID: SV-46933r1_rule
Vulnerability ID: V-35646
Group Title:
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-001092 |
The information system protects against or limits the effects of the organization-defined or referenced types of denial of service attacks. |
Controls
Number | Title |
---|---|
No controls are assigned to this check |