STIGQter STIGQter: STIG Summary: IBM DataPower Network Device Management Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 24 Oct 2017:

The DataPower Gateway must prohibit the use of cached authenticators after an organization-defined time period.

DISA Rule

SV-79657r1_rule

Vulnerability Number

V-65167

Group Title

SRG-APP-000400-NDM-000313

Rule Version

WSDP-NM-000115

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Go to Administration >> Access >> RBM Settings. Click on the Authentication tab. Set cache mode to absolute and set timeout value as needed.

Check Contents

Go to Administration >> Access >> RBM Settings. Click on the Authentication tab. Verify cache mode is set to absolute and set timeout value is set. If it is not, this is a finding.

Vulnerability Number

V-65167

Documentable

False

Rule Version

WSDP-NM-000115

Severity Override Guidance

Go to Administration >> Access >> RBM Settings. Click on the Authentication tab. Verify cache mode is set to absolute and set timeout value is set. If it is not, this is a finding.

Check Content Reference

M

Target Key

2861

Comments