STIGQter STIGQter: STIG Summary: DBN-6300 NDM Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 12 Sep 2017:

The DBN-6300 must uniquely identify and authenticate organizational administrators (or processes acting on behalf of organizational administrators).

DISA Rule

SV-91647r1_rule

Vulnerability Number

V-76951

Group Title

SRG-APP-000148-NDM-000346

Rule Version

DBNW-DM-000049

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Verify that there is one local account configured on the DBN-6300.

Navigate to Settings >> User Management.

Verify that there is one account on the system, and that this account has unrestricted privileges.

If there is more than one local account, delete the additional accounts by clicking on the trashcan icon on the far right of the account(s) in question, until all accounts are deleted except for one administrative account with unlimited privileges.

If there is no local account with administrative or unlimited privileges, create one using the following steps:

Navigate to Settings >> User Management >> Users.

Click on the New User button.

Enter a username for Username, a name (optional), a 15-character (minimum) complex password, and the role of either Admin or Unrestricted.

After all entries are filled, click "Save".

Check Contents

Verify that there is one local account configured on the DBN-6300.

Navigate to Settings >> User Management.

Verify that there is one account on the system and that this account has unrestricted privileges.

If no local account is configured in this way, or more than one account is configured locally, this is a finding.

Vulnerability Number

V-76951

Documentable

False

Rule Version

DBNW-DM-000049

Severity Override Guidance

Verify that there is one local account configured on the DBN-6300.

Navigate to Settings >> User Management.

Verify that there is one account on the system and that this account has unrestricted privileges.

If no local account is configured in this way, or more than one account is configured locally, this is a finding.

Check Content Reference

M

Target Key

2947

Comments