STIGhubSTIGhub
STIGsSearchCompare

STIGhub

A free tool to search and browse the entire DISA STIG library. Saves up to 75% in security compliance research time.

Navigation

  • Browse STIGs
  • Search
  • Compare Versions

Resources

  • About
  • Release Notes
  • VPAT
  • DISA STIG Library
STIGs updated 3 hours ago
Powered by Pylon
© 2026 Beacon Cloud Solutions, Inc. All rights reserved.
← Back to Application Layer Gateway Security Requirements Guide

V-263541

CAT II (Medium)

The ALG must employ organization-defined controls by type of denial of service (DoS) to achieve the DoS objective.

Rule ID

SV-263541r981654_rule

STIG

Application Layer Gateway Security Requirements Guide

Version

V2R3

CCIs

CCI-004866

Discussion

DoS events can occur due to a variety of internal and external causes, such as an attack by an adversary or a lack of planning to support organizational needs with respect to capacity and bandwidth. Such attacks can occur across a wide range of network protocols (e.g., IPv4, IPv6). A variety of technologies are available to limit or eliminate the origination and effects of DoS events. For example, boundary protection devices can filter certain types of packets to protect system components on internal networks from being directly affected by or the source of DoS attacks. Employing increased network capacity and bandwidth combined with service redundancy also reduces the susceptibility to DoS events.

Check Content

Verify the ALG is configured to employ organization-defined controls by type of DoS to achieve the DoS objective.

If the ALG is not configured to employ organization-defined controls by type of DoS to achieve the DoS objective, this is a finding.

Fix Text

Configure the ALG to employ organization-defined controls by type of DoS to achieve the DoS objective.