NET-NAC-012 - Re-authentication must occur every 60 minutes.

Information

The IAO/NSO will ensure if 802.1x Port Authentication is implemented, re-authentication must occur every 60 minutes.

Eliminating unauthorized access to the network from inside the enclave is vital to keeping a network secure. Internal access to the private network is enabled by simply connecting a workstation or laptop to a wall plate or access point located in the work area.

NOTE: This check is derived from the L3 switch guidance, if the scan target is a router the check can be ignored.

Solution

Ensure 802.1x reauthentication occurs every 60 minutes.

See Also

https://iasecontent.disa.mil/stigs/zip/U_Network_Infrastructure_Router_L3_Switch_V8R28_STIG.zip

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-11, CAT|II, Rule-ID|SV-5624r2_rule, STIG-ID|NET-NAC-012, Vuln-ID|V-5624

Plugin: Cisco

Control ID: a8660a368a8d485edf5f8dcd40212e90e9752b1dcdeebc317b227ea374345f3a