UCF STIG Viewer Logo

Riverbed Optimization System (RiOS) must enable the password authentication control policy to ensure password complexity controls and other password policy requirements are enforced.


Overview

Finding ID Version Rule ID IA Controls Severity
V-62941 RICX-DM-000091 SV-77431r1_rule Medium
Description
Password complexity, or strength, is a measure of the effectiveness of a password in resisting attempts at guessing and brute-force attacks.
STIG Date
Riverbed SteelHead CX v8 NDM Security Technical Implementation Guide 2019-10-01

Details

Check Text ( C-63693r1_chk )
Verify authentication policy is enabled.

Navigate to the device Management Console
Navigate to:
Configure >> Security >> Password Policy

Verify the "Enable Account Control" is selected

If "Enable Account Control" is not set, this is a finding.
Fix Text (F-68859r1_fix)
Enable RiOS authentication policy.

Navigate to the device Management Console, then
Navigate to:
Configure >> Security >> Password Policy
Select "Enable Account Control"

Set values for the user account

Click "Save" to save these settings permanently