STIGQter STIGQter: STIG Summary: Cisco ISE NDM Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 13 Apr 2021:

For accounts using password authentication, the Cisco ISE must require that when a password is changed, the characters are changed in at least eight of the positions within the password.

DISA Rule

SV-242650r714260_rule

Vulnerability Number

V-242650

Group Title

SRG-APP-000170-NDM-000329

Rule Version

CSCO-NM-000450

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the password policy.

password-policy password-delta 8

Check Contents

Verify that at least eight is required for the password delta.

Show password policy

If the Cisco ISE password policy is not configured to require at least eight for the password delta, this is a finding.

Vulnerability Number

V-242650

Documentable

False

Rule Version

CSCO-NM-000450

Severity Override Guidance

Verify that at least eight is required for the password delta.

Show password policy

If the Cisco ISE password policy is not configured to require at least eight for the password delta, this is a finding.

Check Content Reference

M

Target Key

5384

Comments