The DataPower Gateway must employ automated mechanisms to centrally verify authentication settings.
DISA Rule
SV-79671r1_rule
Vulnerability Number
V-65181
Group Title
SRG-APP-000516-NDM-000338
Rule Version
WSDP-NM-000136
Severity
CAT II
CCI(s)
- CCI-000366 - The organization implements the security configuration settings.
- CCI-000372 - The organization employs automated mechanisms to centrally verify configuration settings for organization-defined information system components.
Weight
10
Fix Recommendation
Go to Administration >> Access >> RBM Settings. Set Authentication Method to LDAP.
Configure LDAP connection as needed. The connection will be verified.
Check Contents
Go to Administration >> Access >> RBM Settings. Verify Authentication Method is LDAP. If it is not, this is a finding.
Vulnerability Number
V-65181
Documentable
False
Rule Version
WSDP-NM-000136
Severity Override Guidance
Go to Administration >> Access >> RBM Settings. Verify Authentication Method is LDAP. If it is not, this is a finding.
Check Content Reference
M
Target Key
2861
Comments