STIGhub
STIGs
RMF Controls
Compare
← SI-3 (2) — Malicious Code Protection
CCI-001247
Definition
The information system automatically updates malicious code protection mechanisms.
Parent Control
SI-3 (2)
Malicious Code Protection
System and Information Integrity
Linked STIG Checks (12)
V-237380
CAT II
The CA API Gateway providing content filtering must automatically update malicious code protection mechanisms.
CA API Gateway ALG Security Technical Implementation Guide
V-239889
CAT II
The Cisco ASA must be configured to automatically install updates to signature definitions and vendor-provided rules.
Cisco ASA IPS Security Technical Implementation Guide
V-214507
CAT II
The BIG-IP ASM module must be configured to automatically update malicious code protection mechanisms when providing content filtering to virtual servers.
F5 BIG-IP Application Security Manager Security Technical Implementation Guide
V-266159
CAT II
The F5 BIG-IP appliance providing content filtering must automatically update malicious code protection mechanisms.
F5 BIG-IP TMOS ALG Security Technical Implementation Guide
V-55597
CAT II
The IDPS must automatically install updates to signature definitions, detection heuristics, and vendor-provided rules.
Intrusion Detection and Prevention Systems (IDPS) Security Requirements Guide
V-66431
CAT II
The Juniper Networks SRX Series Gateway IDPS must automatically install updates to signature definitions.
Juniper SRX SG IDPS Security Technical Implementation Guide
V-66431
CAT II
The Juniper Networks SRX Series Gateway IDPS must automatically install updates to signature definitions.
Juniper SRX SG IDPS Security Technical Implementation Guide
V-259694
CAT II
Exchange antimalware agent must be enabled and configured.
Microsoft Exchange 2019 Mailbox Server Security Technical Implementation Guide
V-259695
CAT II
The Exchange malware scanning agent must be configured for automatic updates.
Microsoft Exchange 2019 Mailbox Server Security Technical Implementation Guide
V-228851
CAT II
The Palo Alto Networks security platform must automatically update malicious code protection mechanisms.
Palo Alto Networks ALG Security Technical Implementation Guide
V-241145
CAT II
Trend Deep Security must automatically update malicious code protection mechanisms.
Trend Micro Deep Security 9.x Security Technical Implementation Guide
V-242196
CAT II
The TPS must automatically install updates to signature definitions, detection heuristics, and vendor-provided rules.
Trend Micro TippingPoint IDPS Security Technical Implementation Guide