SV-75283r1_rule
V-60827
SRG-NET-000151
AMLS-L2-000140
CAT II
10
Configure 802.1X on the switch, including the following mandatory parameters in the interface configuration mode:
config
interface Ethernet[X]
dot1x reauthentication
dot1x timeout reauth-period 3600
This requirement only applies to devices required to employ 802.1X authentication.
Verify that the network device uniquely identifies network-connected endpoint devices and re-authenticates devices every 60 minutes or less. This can be viewed via the "show dot1x all" command. Under the interface configuration for the .1X connected port, the following statements must be present:
ReauthPeriod : 3600 seconds
If the device does not require re-authentication, or if the re-authentication period is longer than 60 minutes, this is a finding.
V-60827
False
AMLS-L2-000140
This requirement only applies to devices required to employ 802.1X authentication.
Verify that the network device uniquely identifies network-connected endpoint devices and re-authenticates devices every 60 minutes or less. This can be viewed via the "show dot1x all" command. Under the interface configuration for the .1X connected port, the following statements must be present:
ReauthPeriod : 3600 seconds
If the device does not require re-authentication, or if the re-authentication period is longer than 60 minutes, this is a finding.
M
2821