STIGQter STIGQter: STIG Summary: AAA Services Security Requirements Guide Version: 2 Release: 2 Benchmark Date: 30 Jan 2025:

AAA Services must be configured to use protocols that encrypt credentials when authenticating clients, as defined in the PPSM CAL and vulnerability assessments.

DISA Rule

SV-204658r1043177_rule

Vulnerability Number

V-204658

Group Title

SRG-APP-000142

Rule Version

SRG-APP-000142-AAA-000020

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Configure AAA Services to use protocols that encrypt credentials when authenticating clients. Both the RADIUS and TACACS+ protocols are acceptable when configured to perform encryption. For any protocol implemented, the PPSM CAL and vulnerability assessments must be reviewed to ensure the protocols are properly configured.

Check Contents

Verify AAA Services are configured to use protocols that encrypt credentials when authenticating clients. Both the RADIUS and TACACS+ protocols are acceptable when configured to perform encryption. For any protocol implemented, the PPSM CAL and vulnerability assessments must be reviewed to ensure the protocols are properly configured.

If AAA Services are not configured to use protocols that encrypt credentials when authenticating clients, as defined in the PPSM CAL and vulnerability assessments, this is a finding.

Vulnerability Number

V-204658

Documentable

False

Rule Version

SRG-APP-000142-AAA-000020

Severity Override Guidance

Verify AAA Services are configured to use protocols that encrypt credentials when authenticating clients. Both the RADIUS and TACACS+ protocols are acceptable when configured to perform encryption. For any protocol implemented, the PPSM CAL and vulnerability assessments must be reviewed to ensure the protocols are properly configured.

If AAA Services are not configured to use protocols that encrypt credentials when authenticating clients, as defined in the PPSM CAL and vulnerability assessments, this is a finding.

Check Content Reference

M

Target Key

2896