Authentication: enable remote authentication

Information

RADIUS or TACACS+ password management should be leveraged to ensure that a rogue node does not attempt a brute force logon attempt. This is a situation where a large number of logon attempts are made to a known user account.

Solution

Run the following command on the device to configure a remote RADIUS server: configure system security <radius|tacplus> server <index-number> address <ip-address> secret <key>

See Also

https://infoproducts.alcatel-lucent.com/aces/cgi-bin/dbaccessfilename.cgi/9305050101_V1_SR-OS Security Best Practices v2.0.pdf

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-3

Plugin: Alcatel

Control ID: d2ec3dfd32133ad4cc4eac06731f09ea703f00561cf70d769fb3184ae7a70b94