SV-283878r1203883_rule
V-283878
SRG-NET-000343-RTR-000001
NOKI-RT-000600
CAT II
10
Configure all targeted LDP sessions using a FIPS-approved message authentication code algorithm, as shown in the example below:
- configure router ldp tcp-session-parameters authentication-key pass123
Review the router configuration to determine if LDP messages are being authenticated for the targeted LDP sessions.
Verify "Authentication Key" is enabled using the command below:
- show router ldp tcp-session-parameters | match "Authentication Key"
Authentication Key : Enabled
If authentication is not being used for the LDP sessions using a FIPS-approved message authentication code algorithm, this is a finding.
V-283878
False
NOKI-RT-000600
Review the router configuration to determine if LDP messages are being authenticated for the targeted LDP sessions.
Verify "Authentication Key" is enabled using the command below:
- show router ldp tcp-session-parameters | match "Authentication Key"
Authentication Key : Enabled
If authentication is not being used for the LDP sessions using a FIPS-approved message authentication code algorithm, this is a finding.
M
5746