SV-223216r513337_rule
V-223216
SRG-APP-000156-NDM-000250
JUSX-DM-000124
CAT II
10
Configure SSH to use a replay-resistant authentication mechanism. The following is an example stanza.
[edit]
set system services ssh macs hmac-sha2-512
set system services ssh macs hmac-sha2-256
set system services ssh macs hmac-sha1
set system services ssh macs hmac-sha1-96
Verify SSH is configured to use a replay-resistant authentication mechanism.
[edit]
show system services ssh
If SSH is not configured to use the MAC authentication protocol, this is a finding.
V-223216
False
JUSX-DM-000124
Verify SSH is configured to use a replay-resistant authentication mechanism.
[edit]
show system services ssh
If SSH is not configured to use the MAC authentication protocol, this is a finding.
M
4098