SV-3966r6_rule
V-3966
More than one local account is defined.
NET0440
CAT II
10
Configure the device to only allow one local account of last resort for emergency access and store the credentials in a secure manner.
Review the network device configuration to determine if an authentication server is defined for gaining administrative access. If so, there must be only one account of last resort configured locally for an emergency.
Verify the username and password for the local account of last resort is contained within a sealed envelope kept in a safe.
If an authentication server is used and more than one local account exists, this is a finding.
V-3966
False
NET0440
Review the network device configuration to determine if an authentication server is defined for gaining administrative access. If so, there must be only one account of last resort configured locally for an emergency.
Verify the username and password for the local account of last resort is contained within a sealed envelope kept in a safe.
If an authentication server is used and more than one local account exists, this is a finding.
M
1538