STIGQter STIGQter: STIG Summary: HPE Aruba Networking AOS Wireless Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 01 Apr 2026:

AOS, when used as a WLAN bridge or controller, must be configured to only permit management traffic that ingresses and egresses the out-of-band management (OOBM) interface.

DISA Rule

SV-266707r1040611_rule

Vulnerability Number

V-266707

Group Title

SRG-NET-000205

Rule Version

ARBA-NT-001650

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure AOS with the following commands:
configure terminal
ip default-gateway mgmt <A.B.C.D IPv4 address>
ipv6 default-gateway mgmt <X:X:X:X::X IPv6 address>
write memory

Check Contents

Verify the AOS configuration with the following command:
show ip route verbose

If any the management traffic network is not configured with a route to the OOBM gateway, this is a finding.

Vulnerability Number

V-266707

Documentable

False

Rule Version

ARBA-NT-001650

Severity Override Guidance

Verify the AOS configuration with the following command:
show ip route verbose

If any the management traffic network is not configured with a route to the OOBM gateway, this is a finding.

Check Content Reference

M

Target Key

5646