Check: DSN13.15
Defense Switched Network (DSN) STIG:
DSN13.15
(in versions v2 r8 through v2 r7)
Title
Crash-restart vulnerabilities are present on the DSN system component. (Cat II impact)
Discussion
Requirement: The IAO will ensure that tests are performed for crash-restart vulnerabilities and develop procedures to eliminate vulnerabilities found (i.e., ensure ENHANCED_PASSWORD_CONTROL is active to prevent system logons after restart on Nortel switches). Some systems reset to default settings (i.e. users names, passwords, user access privileges) when a re-boot is initiated. If this is the case and a restart occurs and action is not taken to reset default settings, the risk is increased for unauthorized access.
Check Content
ensure ENHANCED_PASSWORD_CONTROL is active to prevent system logons after restart on Nortel switches
Fix Text
Implement processes / procedures, generate documents, and/or adjust configuration(s) / architecture, as necessary to comply with policy.
Additional Identifiers
Rule ID: SV-8456r1_rule
Vulnerability ID: V-7970
Group Title: Crash-restart vulnerabilities are present.
Expert Comments
CCIs
Number | Definition |
---|---|
No CCIs are assigned to this check |
Controls
Number | Title |
---|---|
No controls are assigned to this check |