STIGUI
V-78725CAT II — Medium severitySV-93431r1_rule

Tanium Server files must be protected from file encryption actions.

Rule version TANS-SV-000043 · STIG v1 · 2018-07-09

Discussion

Similar to any other host-based applications, the Tanium Server is subject to the restrictions other System-level software may place on an operating environment. Antivirus, Encryption, or other security and management stack software may disallow the Tanium Server from working as expected.

https://docs.tanium.com/platform_install/platform_install/reference_host_system_security_exceptions.html.

Check

Consult with the Tanium System Administrator to determine the file-level encryption software used on the Tanium Server.

Review the settings for the file-level encryption software.

Validate exclusions exist that exclude the Tanium program files from being encrypted by the file-level encryption software.

If exclusions do not exist, this is a finding.

Fix

Implement excluding policies within the file-level encryption software solution to exclude encryption of the Tanium Server program files.

Identifiers

Group ID
V-78725
Group title
SRG-APP-000516
Rule ID
SV-93431r1_rule
Check ID
C-78295r1_chk
Fix ID
F-85461r2_fix