User Authentication Security - Centralized authentication - Create an emergency local account in the event authentication is unavailable

Information

But whether you are in a large or small network, at least one local user account should always be configured on your network devices for emergency purposes.

Solution

Create an emergency privilaged account, with a strong password, for use as backup in the event that root or centralized authentication fails.

user@host# edit system login user <EMERGENCY_NAME>
user@host# set full-name "emergency local account"
user@host# set authentication encrpyted-password <PASSWORD>

See Also

http://www.juniper.net/us/en/training/jnbooks/day-one/fundamentals-series/hardening-junos-devices-checklist/

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6(1)

Plugin: Juniper

Control ID: 065cb83956d9b88777084b2bcde5b3f584e26895bd7db27f685c45447f83b727