Check: NET0441
WMAN Access Point STIG (STIG):
NET0441
(in versions v6 r13 through v6 r11)
Title
The emergency administration account must be set to an appropriate authorization level to perform necessary administrative functions when the authentication server is not online. (Cat I impact)
Discussion
The emergency administration account is to be configured as a local account on the network devices. It is to be used only when the authentication server is offline or not reachable via the network. The emergency account must be set to an appropriate authorization level to perform necessary administrative functions during this time.
Check Content
Review the emergency administration account configured on the network devices and verify that it has been assigned to a privilege level that will enable the administrator to perform necessary administrative functions when the authentication server is not online. If the emergency administration account is configured for more access than needed to troubleshoot issues, this is a finding.
Fix Text
Assign a privilege level to the emergency administration account to allow the administrator to perform necessary administrative functions when the authentication server is not online.
Additional Identifiers
Rule ID: SV-16261r5_rule
Vulnerability ID: V-15434
Group Title: Emergency administration account privilege level is not set.
Expert Comments
CCIs
Number | Definition |
---|---|
No CCIs are assigned to this check |
Controls
Number | Title |
---|---|
No controls are assigned to this check |