The Tanium database(s) must be installed on a separate system.
Severity | Group ID | Group Title | Version | Rule ID | Date | STIG Version |
---|---|---|---|---|---|---|
medium | V-234071 | SRG-APP-000323 | TANS-DB-000001 | SV-234071r612749_rule | 2021-12-20 | 2 |
Description |
---|
Failure to protect organizational information from data mining may result in a compromise of information. Data storage objects include, for example, databases, database records, and database fields. Data mining prevention and detection techniques include, for example: limiting the types of responses provided to database queries, limiting the number/frequency of database queries to increase the work factor needed to determine the contents of such databases, and notifying organizational personnel when atypical database queries or accesses occur. |
ℹ️ Check |
---|
Consult with the Tanium System Administrator to determine the server to which the database has been installed and is configured. If the customer is using a Tanium Appliance, this is Not Applicable. If the database is installed on the same server as the Tanium Server or Tanium Module Server, this is a finding. |
✔️ Fix |
---|
Move the Tanium database from the Tanium Server or Tanium Module Server to a separate server. |