SV-217411r557520_rule
V-217411
SRG-APP-000329-NDM-000287
F5BI-DM-000179
CAT II
10
Configure the BIG-IP appliance to use a properly configured authentication server to enforce organization-defined role-based access control policy over defined subjects and objects.
Verify the BIG-IP appliance enforces organization-defined role-based access control policy over defined subjects and objects.
Navigate to the BIG-IP System manager >> System >> Users >> Authentication.
Verify that "User Directory" is set to an approved authentication server that assigns authenticated users to an appropriate group.
Navigate to System >> Users >> Remote Role Groups.
Verify Remote Role Groups are assigned proper Role Access and Partition Access.
If the BIG-IP appliance is not configured to enforce organization-defined role-based access control policies over defined subjects and objects, this is a finding.
V-217411
False
F5BI-DM-000179
Verify the BIG-IP appliance enforces organization-defined role-based access control policy over defined subjects and objects.
Navigate to the BIG-IP System manager >> System >> Users >> Authentication.
Verify that "User Directory" is set to an approved authentication server that assigns authenticated users to an appropriate group.
Navigate to System >> Users >> Remote Role Groups.
Verify Remote Role Groups are assigned proper Role Access and Partition Access.
If the BIG-IP appliance is not configured to enforce organization-defined role-based access control policies over defined subjects and objects, this is a finding.
M
4036