SV-215813r531083_rule
V-215813
SRG-APP-000065-NDM-000214
CISC-ND-000150
CAT II
10
Configure the Cisco router to enforce the limit of three consecutive invalid logon attempts as shown in the example below.
R2(config)#login block-for 900 attempts 3 within 120
Review the Cisco router configuration to verify that it enforces the limit of three consecutive invalid logon attempts as shown in the example below.
login block-for 900 attempts 3 within 120
Note: The configuration example above will block any login attempt for 15 minutes after three consecutive invalid logon attempts within a two-minute period.
If the Cisco router is not configured to enforce the limit of three consecutive invalid logon attempts, this is a finding.
V-215813
False
CISC-ND-000150
Review the Cisco router configuration to verify that it enforces the limit of three consecutive invalid logon attempts as shown in the example below.
login block-for 900 attempts 3 within 120
Note: The configuration example above will block any login attempt for 15 minutes after three consecutive invalid logon attempts within a two-minute period.
If the Cisco router is not configured to enforce the limit of three consecutive invalid logon attempts, this is a finding.
M
4020