SV-266067r1024598_rule
V-266067
SRG-APP-000033-NDM-000212
F5BI-DM-300010
CAT I
10
Remote Roles (e.g., RADIUS, LDAP groups)
From the BIG-IP GUI:
1. System.
2. Users.
3. Remote Role Groups.
4. Select the Group Name.
5. Modify the Properties of the group to the appropriate access level.
6. Update.
Local Users
1. System.
2. Users.
3. User List.
4. Select the user.
5. Modify "Partition Access" to the appropriate access level.
6. Update.
From the BIG-IP GUI:
1. System.
2. Users.
3. Remote Role Groups.
4. Verify configured groups are assigned the appropriate role.
From the BIG-IP console, type the following command:
tmsh list auth remote-role
Note: Verify configured groups are assigned the appropriate role.
If the BIG-IP appliance is not configured to assign appropriate user roles or access levels to authenticated users, this is a finding.
V-266067
False
F5BI-DM-300010
From the BIG-IP GUI:
1. System.
2. Users.
3. Remote Role Groups.
4. Verify configured groups are assigned the appropriate role.
From the BIG-IP console, type the following command:
tmsh list auth remote-role
Note: Verify configured groups are assigned the appropriate role.
If the BIG-IP appliance is not configured to assign appropriate user roles or access levels to authenticated users, this is a finding.
M
5639