FireEye - AAA lockout settings apply to the 'admin' user

Information

Password-guessing attacks against the 'admin' account may succeed quickly if account lockouts are not enabled.

Solution

Edit the configuration and add this line:\n

no aaa authentication attempts class-override admin no-lockout

Item Details

Audit Name: TNS FireEye

Category: ACCESS CONTROL

References: 800-53|AC-7a., CSCv6|16.7

Plugin: FireEye

Control ID: f498cc8aa0e3c5c0062efcc325615be28d53d7bdc2fbbf00bde2b1189a321c4c