STIGQter STIGQter: STIG Summary: RUCKUS ICX NDM Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 27 May 2025:

The RUCKUS ICX device must be configured with only one local account to be used as the account of last resort in the event the authentication server is unavailable.

DISA Rule

SV-273799r1110841_rule

Vulnerability Number

V-273799

Group Title

SRG-APP-000148-NDM-000346

Rule Version

RCKS-NDM-000350

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Remove excess locally defined users:

SSH@ICX(config)# no username [account_name]

Check Contents

View configuration for locally defined user accounts:

SSH@ICX(config)#show running-config | include username

If there is more than one locally defined user account, this is a finding.

Vulnerability Number

V-273799

Documentable

False

Rule Version

RCKS-NDM-000350

Severity Override Guidance

View configuration for locally defined user accounts:

SSH@ICX(config)#show running-config | include username

If there is more than one locally defined user account, this is a finding.

Check Content Reference

M

Target Key

5695