SV-217415r557520_rule
V-217415
SRG-APP-000380-NDM-000304
F5BI-DM-000213
CAT II
10
Configure the BIG-IP appliance to use role-based access to enforce access restrictions associated with changes to device configuration.
Verify the BIG-IP appliance is configured to enforce access restrictions associated with changes to device configuration.
Navigate to the BIG-IP System manager >> System >> Users >> Authentication.
Verify that "User Directory" is set to an approved authentication server that assigns authenticated users to an appropriate group.
Navigate to System >> Users >> Remote Role Groups.
Verify Remote Role Groups are assigned proper Role Access and Partition Access to enforce access restrictions associated with changes to device configuration.
If the BIG-IP appliance is not configured to enforce such access restrictions, this is a finding.
V-217415
False
F5BI-DM-000213
Verify the BIG-IP appliance is configured to enforce access restrictions associated with changes to device configuration.
Navigate to the BIG-IP System manager >> System >> Users >> Authentication.
Verify that "User Directory" is set to an approved authentication server that assigns authenticated users to an appropriate group.
Navigate to System >> Users >> Remote Role Groups.
Verify Remote Role Groups are assigned proper Role Access and Partition Access to enforce access restrictions associated with changes to device configuration.
If the BIG-IP appliance is not configured to enforce such access restrictions, this is a finding.
M
4036