F5BI-DM-000227 - The BIG-IP appliance must be configured to dynamically manage user accounts.

Information

Dynamic user account management prevents disruption of operations by minimizing the need for system restarts. Dynamic establishment of new user accounts will occur while the system is operational. New user accounts or changes to existing user accounts must take effect without the need for a system or session restart. Pre-established trust relationships and mechanisms with appropriate authorities (e.g., Active Directory or authentication server) that validate each user account are essential to prevent unauthorized access by changed or revoked accounts.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Configure the BIG-IP appliance to use a properly configured authentication server to dynamically manage user accounts.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_F5_BIG-IP_Y24M01_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT, IDENTIFICATION AND AUTHENTICATION

References: 800-53|CM-6b., 800-53|IA-4(5), CAT|II, CCI|CCI-000366, CCI|CCI-001976, Rule-ID|SV-229007r879887_rule, STIG-ID|F5BI-DM-000227, STIG-Legacy|SV-74643, STIG-Legacy|V-60213, Vuln-ID|V-229007

Plugin: F5

Control ID: d3163b0c9ec25b1692541da4fda83ceff5624700713a7802ccdab4ae91ae90af