STIGQter STIGQter: STIG Summary: Juniper SRX SG NDM Security Technical Implementation Guide Version: 2 Release: 1 Benchmark Date: 23 Apr 2021:

The Juniper SRX Services Gateway must ensure SSH is disabled for root user logon to prevent remote access using the root account.

DISA Rule

SV-223212r513325_rule

Vulnerability Number

V-223212

Group Title

SRG-APP-000142-NDM-000245

Rule Version

JUSX-DM-000112

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

From the configuration mode, enter the following commands to disable root-login using SSH.

[edit]
set system services ssh root-login deny

Check Contents

Use the CLI to view this setting for disabled for SSH.

[edit]
show system services ssh root-login

If SSH is not disabled for the root user, this is a finding.

Vulnerability Number

V-223212

Documentable

False

Rule Version

JUSX-DM-000112

Severity Override Guidance

Use the CLI to view this setting for disabled for SSH.

[edit]
show system services ssh root-login

If SSH is not disabled for the root user, this is a finding.

Check Content Reference

M

Target Key

4098

Comments