STIGQter STIGQter: STIG Summary: Authentication, Authorization, and Accounting Services (AAA) Security Requirements Guide Version: 1 Release: 2 Benchmark Date: 24 Jan 2020:

AAA Services must be configured to use their loopback or OOB management interface address as the source address when originating NTP traffic.

DISA Rule

SV-95597r1_rule

Vulnerability Number

V-80887

Group Title

SRG-APP-000516-AAA-000370

Rule Version

SRG-APP-000516-AAA-000370

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

Configure AAA Services to use their loopback or OOB management interface address as the source address when originating NTP traffic.

Check Contents

Verify AAA Services are configured to use their loopback interface address as the source address when originating NTP traffic. When AAA Services are managed from an OOB management network, the OOB interface must be used instead of the loopback address for originating NTP traffic.

If AAA Services are not configured to use the OOB interface when managed from an OOB management network, this is a finding.

If AAA Services are not configured to use the loopback or OOB management interface as the source address when originating NTP traffic, this is a finding.

Vulnerability Number

V-80887

Documentable

False

Rule Version

SRG-APP-000516-AAA-000370

Severity Override Guidance

Verify AAA Services are configured to use their loopback interface address as the source address when originating NTP traffic. When AAA Services are managed from an OOB management network, the OOB interface must be used instead of the loopback address for originating NTP traffic.

If AAA Services are not configured to use the OOB interface when managed from an OOB management network, this is a finding.

If AAA Services are not configured to use the loopback or OOB management interface as the source address when originating NTP traffic, this is a finding.

Check Content Reference

M

Target Key

3357

Comments