STIGQter STIGQter: STIG Summary: Cisco ISE NDM Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 13 Apr 2021:

For accounts using password authentication, the Cisco ISE must enforce password complexity by requiring that at least one lower-case character be used.

DISA Rule

SV-242647r714251_rule

Vulnerability Number

V-242647

Group Title

SRG-APP-000167-NDM-000255

Rule Version

CSCO-NM-000420

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the password policy.

password-policy lower-case required 1

Check Contents

Verify that at least one lower-case letter is required.

Show password policy

If the Cisco ISE password policy is not configured to require at least one lower-case character, this is a finding.

Vulnerability Number

V-242647

Documentable

False

Rule Version

CSCO-NM-000420

Severity Override Guidance

Verify that at least one lower-case letter is required.

Show password policy

If the Cisco ISE password policy is not configured to require at least one lower-case character, this is a finding.

Check Content Reference

M

Target Key

5384

Comments