UCF STIG Viewer Logo

The router must enable authentication for all IS-IS peers.


Overview

Finding ID Version Rule ID IA Controls Severity
SRG-NET-000025-RTR-000024 SRG-NET-000025-RTR-000024 SRG-NET-000025-RTR-000024_rule Medium
Description
A rogue router could send a fictitious routing update to convince a site's perimeter router to send traffic to an incorrect or even a rogue destination. This diverted traffic could be analyzed to learn confidential information of the site's network, or merely used to disrupt the network's ability to communicate with other networks.
STIG Date
Router Security Requirements Guide 2013-07-30

Details

Check Text ( C-SRG-NET-000025-RTR-000024_chk )
Verify authentication is implemented for all IS-IS peers.
Fix Text (F-SRG-NET-000025-RTR-000024_fix)
Configure authentication for all IS-IS peers.