Firewall rules must be configured on the Tanium Server for Server-to-Module Server communications.
Overview
| Finding ID | Version | Rule ID | IA Controls | Severity |
| V-254943 | TANS-AP-000980 | SV-254943r1067733_rule | CCI-001762 | medium |
| Description | ||||
| The Tanium Module Server is used to extend the functionality of Tanium through the use of various workbenches. The Tanium Module Server requires communication with the Tanium Server on port 17477. Without a proper connection from the Tanium Server to the Tanium Module Server, access to the system capabilities could be denied. https://docs.tanium.com/platform_install/platform_install/reference_network_ports.html. | ||||
| STIG | Date | |||
| Tanium 7.x Application on TanOS Security Technical Implementation Guide | 2025-02-11 | |||
Related Frameworks
3 paths across 3 frameworks
Related Frameworks
NIST 800-531 mapping
CM-7(1)
1.00
- DISA · V2R2 · disa_xccdf · related
- DISA · 2025-01-23 · disa_cci_list · equivalent
NIST 800-1711 mapping
3.4.7
1.00
- DISA · V2R2 · disa_xccdf · related
- DISA · 2025-01-23 · disa_cci_list · equivalent
- NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
CCI1 mapping
CCI-001762
1.00
- DISA · V2R2 · disa_xccdf · related
Details
Check Text (C-254943r1067733_chk)
Consult with the network firewall administrator and validate rules exist for the following:
- Allow TCP traffic on port 17477 from the Tanium Module Server to the Tanium Server.
If a network firewall rule does not exist to allow TCP traffic on port 17477 from the Tanium Module Server to the Tanium Server, this is a finding.
Fix Text (F-58500r1067732_fix)
Configure the network firewall to allow TCP traffic on port 17477 from the Tanium Module Server to the Tanium Server.