SV-252197r997780_rule
V-252197
SRG-APP-000516-NDM-000336
HPEN-NM-000120
CAT I
10
To configure AD, run the following commands:
"userauth --join <domain> --domain_user administrator" and enter the domain administrator password to join <domain>.
"userauth --list" will show the domain and its status.
To create a mapping between an AD group and one of the four device RBAC roles, run the following command:
"userauth --add_group <domain_group> --domain <domain> --role {administrator|poweruser|operator|guest}"
This command allows any member of <domain_group> in <domain> AD domain to log in to the device with one of the selected roles.
To display the group to role mappings, run "userauth --list_group --domain <domain>".
Run the command "userauth --list".
If the output is "No domains configured", this is a finding.
V-252197
False
HPEN-NM-000120
Run the command "userauth --list".
If the output is "No domains configured", this is a finding.
M
5460