Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
SRG-NET-000142-IDPS-NA | SRG-NET-000142-IDPS-NA | SRG-NET-000142-IDPS-NA_rule | Medium |
Description |
---|
Multifactor authentication is defined as: using two or more factors to achieve authentication. Factors include: (i) something you know (e.g. password/PIN); (ii) something you have (e.g., cryptographic identification device, token); or (iii) something you are (e.g., biometric). Non-privileged account: An information system account with authorizations of a regular or non-privileged user. Local access: Access to an organizational information system by a user (or process acting on behalf of a user) communicating through a direct connection without the use of a network. Multifactor authentication provides strong protection for authentication mechanisms. Without a strong authentication method, the system is more easily breached by standard access control attacks. |
STIG | Date |
---|---|
IDPS Security Requirements Guide (SRG) | 2012-03-08 |
Check Text ( C-43267_chk ) |
---|
This requirement does not apply to IDPS. |
Fix Text (F-43267_fix) |
---|
Not applicable for IDPS. No fix required. |