SV-242601r714113_rule
V-242601
SRG-NET-000343-NAC-001460
CSCO-NC-000270
CAT II
10
Configure each policy set so that authorization policies have either "deny-access" or restricted access on their default authorization policy set.
1. Work Centers >> Network Access >> Policy Sets.
2. Choose ">" on the desired policy set.
3. Expand Authorization Policy.
On the default authorization rule, select "Deny-Access" or a result that is configured for a restricted VLAN, Access Control List, Scalable Group Tag, or any combination of these used to restrict access.
Verify that the authorization policies have either "deny-access" or restricted access on their default authorization policy set.
1. Work Centers >> Network Access >> Policy Sets.
2. Choose ">" on the desired policy set.
3. Expand Authorization Policy.
If the default authorization policy within each policy set has "deny-access" or restricted access, this is not a finding.
V-242601
False
CSCO-NC-000270
Verify that the authorization policies have either "deny-access" or restricted access on their default authorization policy set.
1. Work Centers >> Network Access >> Policy Sets.
2. Choose ">" on the desired policy set.
3. Expand Authorization Policy.
If the default authorization policy within each policy set has "deny-access" or restricted access, this is not a finding.
M
5383