SV-77349r1_rule
V-62859
SRG-APP-000065-NDM-000214
RICX-DM-000024
CAT II
10
Configure RiOS to limit the number of invalid logon attempts to 3 during a 15 minute period.
Login to the device console to access the command line interface (CLI)
Type: enable
Type: conf t
Type: authentication policy template strong
Scroll down to "Maximum unsuccessful logins before account lockout:" and type "3"
Under "Wait before account unlock:" and type "900" Seconds
Type: write memory
Verify that RiOS is configured to limit the number of invalid logon attempts during a 15 minute period to 3.
Login to the device console to access the command line interface (CLI)
Type: show authentication policy
Verify that "Maximum unsuccessful logins before account lockout:" is set to "3"
Verify that "Wait before account unlock:" is set to "900" seconds
If "Maximum unsuccessful logins before account lockout" is not set to "3" and/or "Wait before account unlock" is not set to "900" seconds, this is a finding.
V-62859
False
RICX-DM-000024
Verify that RiOS is configured to limit the number of invalid logon attempts during a 15 minute period to 3.
Login to the device console to access the command line interface (CLI)
Type: show authentication policy
Verify that "Maximum unsuccessful logins before account lockout:" is set to "3"
Verify that "Wait before account unlock:" is set to "900" seconds
If "Maximum unsuccessful logins before account lockout" is not set to "3" and/or "Wait before account unlock" is not set to "900" seconds, this is a finding.
M
2931