STIGQter STIGQter: STIG Summary: Nokia Service Router OS 25.x Network Device Management Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 28 Apr 2026:

The Nokia router must be configured to authenticate Simple Network Management Protocol (SNMP) messages using a Federal Information Processing Standard (FIPS)-validated Keyed-Hash message authentication code.

DISA Rule

SV-283780r1203385_rule

Vulnerability Number

V-283780

Group Title

SRG-APP-000395-NDM-000310

Rule Version

NOKI-ND-000700

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the Nokia router to authenticate SNMP messages using authentication with FIPS-compliant algorithms, as shown in the example below:

- configure system security user <user name> snmp authentication hmac-sha2-256 <authentication key>

Check Contents

Review the Nokia router configuration to verify it authenticates SNMP messages using authentication with FIPS-compliant algorithms, as shown in the example below:

- show system security user <user name> detail| match "auth proto"

auth protocol : hmac-sha2-256

If the Nokia router is not configured to authenticate SNMP messages using authentication with FIPS-validated algorithms, this is a finding.

Vulnerability Number

V-283780

Documentable

False

Rule Version

NOKI-ND-000700

Severity Override Guidance

Review the Nokia router configuration to verify it authenticates SNMP messages using authentication with FIPS-compliant algorithms, as shown in the example below:

- show system security user <user name> detail| match "auth proto"

auth protocol : hmac-sha2-256

If the Nokia router is not configured to authenticate SNMP messages using authentication with FIPS-validated algorithms, this is a finding.

Check Content Reference

M

Target Key

5744