FIX Server LOGON detection
Info Nessus Network Monitor Plugin ID 6739
SynopsisThe remote host is running the Financial Information eXchange (FIX) protocol.
DescriptionThe remote server is running a Financial Information eXchange (FIX) application. This protocol is used by financial institutions to exchange data. The FIX protocol has very few built-in security controls and, instead, relies on industry standard encryption (PGP, SSL/TLS, etc.) to protect the stream. The PVS has noted a client initiating a LOGON to this server without use of the 'encryption' key.
SolutionEnsure that FIX data is encrypted when passed over untrusted networks.