UCF STIG Viewer Logo

The network device must uniquely identify and authenticate organizational administrators (or processes acting on behalf of organizational administrators).


Overview

Finding ID Version Rule ID IA Controls Severity
V-55103 SRG-APP-000148-NDM-000246 SV-69349r2_rule Medium
Description
To assure accountability and prevent unauthenticated access, organizational administrators must be uniquely identified and authenticated for all network management accesses to prevent potential misuse and compromise of the system. This control does not apply to the root account (when applicable) or the account of last resort which are considered to be authorized shared accounts.
STIG Date
Network Device Management Security Requirements Guide 2017-07-07

Details

Check Text ( C-55725r2_chk )
Determine if the network device uniquely identifies and authenticates organizational administrators. This requirement may be verified by demonstration or configuration review. This requirement may be met through use of a properly configured authentication server if the device is configured to use the authentication server.

If organizational administrators are not uniquely identified and authenticated, this is a finding.
Fix Text (F-59969r1_fix)
Configure the network device to uniquely identify and authenticate organizational administrators.