SV-90629r1_rule
V-75941
SRG-NET-000147-ALG-000095
CACT-AG-000009
CAT II
10
If user authentication intermediary services are provided, configure CounterACT to implement replay-resistant authentication mechanisms for network access to non-privileged accounts.
1. Connect to CounterACT’s Admin Console and log in.
2. Go to Tools >> Options >> User Directory.
3. Ensure the User Directory is configured for secure methods of communication. On the Settings TAB ensure the "Use TLS" radio button is selected.
4. Select "OK". (Select "Apply" if changes were made.)
If CounterACT does not provide user authentication intermediary services, this is not applicable.
Verify CounterACT is configured to implement replay-resistant authentication mechanisms for network access to non-privileged accounts.
1. Connect to CounterACT’s Admin Console and log in.
2. Go to Tools >> Options >> User Directory.
3. Verify the User Directory is configured for secure methods of communication. On the Settings TAB ensure the "Use TLS" radio button is selected.
If CounterACT does not implement replay-resistant authentication mechanisms for network access to non-privileged accounts, this is a finding.
V-75941
False
CACT-AG-000009
If CounterACT does not provide user authentication intermediary services, this is not applicable.
Verify CounterACT is configured to implement replay-resistant authentication mechanisms for network access to non-privileged accounts.
1. Connect to CounterACT’s Admin Console and log in.
2. Go to Tools >> Options >> User Directory.
3. Verify the User Directory is configured for secure methods of communication. On the Settings TAB ensure the "Use TLS" radio button is selected.
If CounterACT does not implement replay-resistant authentication mechanisms for network access to non-privileged accounts, this is a finding.
M
3223