STIGQter STIGQter: STIG Summary: HPE Aruba Networking AOS Wireless Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 01 Apr 2026:

AOS must require devices to reauthenticate when organization-defined circumstances or situations requiring reauthentication.

DISA Rule

SV-266627r1173879_rule

Vulnerability Number

V-266627

Group Title

SRG-NET-000338

Rule Version

ARBA-NT-000800

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure AOS with the following commands:
configure terminal
crypto-local ipsec-map <name> <priority>
set security-association lifetime seconds 28800
exit
write memory

Check Contents

Verify the AOS configuration with the following command:
show crypto-local ipsec-map

If the configured IPSec maps are not configured to support a security association lifetime of 28,800 seconds (8 hours), this is a finding.

Vulnerability Number

V-266627

Documentable

False

Rule Version

ARBA-NT-000800

Severity Override Guidance

Verify the AOS configuration with the following command:
show crypto-local ipsec-map

If the configured IPSec maps are not configured to support a security association lifetime of 28,800 seconds (8 hours), this is a finding.

Check Content Reference

M

Target Key

5646