Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-55103 | SRG-APP-000148-NDM-000246 | SV-69349r2_rule | Medium |
Description |
---|
To assure accountability and prevent unauthenticated access, organizational administrators must be uniquely identified and authenticated for all network management accesses to prevent potential misuse and compromise of the system. This control does not apply to the root account (when applicable) or the account of last resort which are considered to be authorized shared accounts. |
STIG | Date |
---|---|
Network Device Management Security Requirements Guide | 2017-12-28 |
Check Text ( C-55725r2_chk ) |
---|
Determine if the network device uniquely identifies and authenticates organizational administrators. This requirement may be verified by demonstration or configuration review. This requirement may be met through use of a properly configured authentication server if the device is configured to use the authentication server. If organizational administrators are not uniquely identified and authenticated, this is a finding. |
Fix Text (F-59969r1_fix) |
---|
Configure the network device to uniquely identify and authenticate organizational administrators. |