SV-104241r2_rule
V-94287
SRG-NET-000340-ALG-000091
SYMP-AG-000360
CAT II
10
Configure an approved method of multifactor authentication (such as CAC certificate authentication).
1. Log on to the Web Management Console.
2. Browse to Configuration >> Authentication.
3. Configure at least one multifactor method (such as CAC certificate authentication) per the ProxySG Administration Guide (CAC Certificate authentication configuration is covered in Chapter 52: Certificate Realm Authentication and Chapter 58: LDAP Realm Authentication).
Multiple methods of multifactor authentication are supported. Verify that an approved method is configured (such as CAC certificate authentication).
1. Log on to the Web Management Console.
2. Browse to Configuration >> Authentication.
3. Click each of the above authentication mechanisms and Verify that at least one approved multifactor authentication method is configured.
If Symantec ProxySG providing user authentication intermediary services does not implement multifactor authentication for remote access to privileged accounts such that one of the factors is provided by a device separate from the system gaining access, this is a finding.
V-94287
False
SYMP-AG-000360
Multiple methods of multifactor authentication are supported. Verify that an approved method is configured (such as CAC certificate authentication).
1. Log on to the Web Management Console.
2. Browse to Configuration >> Authentication.
3. Click each of the above authentication mechanisms and Verify that at least one approved multifactor authentication method is configured.
If Symantec ProxySG providing user authentication intermediary services does not implement multifactor authentication for remote access to privileged accounts such that one of the factors is provided by a device separate from the system gaining access, this is a finding.
M
3515