STIGQter STIGQter: STIG Summary: Dell OS10 Switch NDM Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 10 Dec 2024:

The Dell OS10 Switch must prevent nonprivileged users from executing privileged functions to include disabling, circumventing, or altering implemented security safeguards/countermeasures.

DISA Rule

SV-269790r1051755_rule

Vulnerability Number

V-269790

Group Title

SRG-APP-000340-NDM-000288

Rule Version

OS10-NDM-000640

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Configure the OS10 Switch to assign appropriate user roles or access levels to authenticated users:

OS10(config)# username <name> password ********** role <sysadmin/netoperator/secadmin/netadmin>

Check Contents

Determine if the OS10 Switch prevents nonprivileged users from executing privileged functions to include disabling, circumventing, or altering implemented security safeguards/countermeasures.

Access to privileged functions is restricted by OS10 to users with the appropriate role. Verify the OS10 Switch is configured to assign appropriate user roles to authenticated users. Valid roles are system admin, security admin, network admin, and network operator. Verify the correct role is assigned to each user:

OS10# show running-configuration users
username admin password **** role sysadmin priv-lvl 15
username op100 password **** role netoperator priv-lvl 1
OS10#

If the OS10 Switch does not prevent nonprivileged users from executing privileged functions, this is a finding.

Vulnerability Number

V-269790

Documentable

False

Rule Version

OS10-NDM-000640

Severity Override Guidance

Determine if the OS10 Switch prevents nonprivileged users from executing privileged functions to include disabling, circumventing, or altering implemented security safeguards/countermeasures.

Access to privileged functions is restricted by OS10 to users with the appropriate role. Verify the OS10 Switch is configured to assign appropriate user roles to authenticated users. Valid roles are system admin, security admin, network admin, and network operator. Verify the correct role is assigned to each user:

OS10# show running-configuration users
username admin password **** role sysadmin priv-lvl 15
username op100 password **** role netoperator priv-lvl 1
OS10#

If the OS10 Switch does not prevent nonprivileged users from executing privileged functions, this is a finding.

Check Content Reference

M

Target Key

5666