STIGQter STIGQter: STIG Summary: AAA Services Security Requirements Guide Version: 2 Release: 2 Benchmark Date: 30 Jan 2025:

AAA Services must be configured to prohibit or restrict the use of organization-defined functions, ports, protocols, and/or services, as defined in the PPSM CAL and vulnerability assessments.

DISA Rule

SV-204659r1043177_rule

Vulnerability Number

V-204659

Group Title

SRG-APP-000142

Rule Version

SRG-APP-000142-AAA-000680

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure AAA Services to prohibit or restrict the use of organization-defined functions, ports, protocols, and/or services, as defined in the PPSM CAL and vulnerability assessments.

Check Contents

Review the AAA Services configuration to ascertain if it prohibits or restricts the use of organization-defined functions, ports, protocols, and/or services. Further determine if the use is as defined in the PPSM CAL and vulnerability assessments.

If AAA Services are not configured in accordance with the PPSM CAL and vulnerability assessments, this is a finding.

Vulnerability Number

V-204659

Documentable

False

Rule Version

SRG-APP-000142-AAA-000680

Severity Override Guidance

Review the AAA Services configuration to ascertain if it prohibits or restricts the use of organization-defined functions, ports, protocols, and/or services. Further determine if the use is as defined in the PPSM CAL and vulnerability assessments.

If AAA Services are not configured in accordance with the PPSM CAL and vulnerability assessments, this is a finding.

Check Content Reference

M

Target Key

2896