STIGUI
V-285223CAT II — Medium severitySV-285223r1244921_rule

The Ivanti Policy Secure NAC must be configured to notify the user before proceeding with remediation of the user's endpoint device when automated remediation is used.

Rule version IVPS-NC-000005 · STIG v1 · 2026-07-09

Discussion

Connections that bypass established security controls should only be used in cases of administrative need. These procedures and use cases must be approved by the information system security manager (ISSM).

Check

In the Ivanti Policy Secure Web UI, navigate to Authentication >> Endpoint Security >> Host Checker.

If there are no Host Checker policies to notify the user before proceeding with remediation of the user's endpoint device when automated remediation is used, this is a finding.

Fix

1. In the Ivanti Policy Secure Web UI, navigate to Authentication >> Endpoint Security >>Host Checker. 2. Under "Policies", click "New". 3. Type a name. 4. Click "Continue". 5. Under "Rule Settings", select "Rule type". 6. Create Host Checker rules to notify the user before proceeding with remediating the user's endpoint device when automated remediation is used. 7. Click "Save Changes".

Identifiers

Group ID
V-285223
Group title
SRG-NET-000015-NAC-000070
Rule ID
SV-285223r1244921_rule
Check ID
C-89792r1244776_chk
Fix ID
F-89697r1244777_fix