Management Services Security - Community strings and USM passwords should be difficult to guess and should follow a policy - community

Information

It's a best security practice to use complex community strings and to change them periodically since they are transmitted in plain-text and susceptible to capture.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

If SNMP version 1 or 2 is required, review the configuration to make sure the community strings follow your password complexity policy.

See Also

http://www.juniper.net/us/en/training/jnbooks/day-one/fundamentals-series/hardening-junos-devices-checklist/

Item Details

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-5c.

Plugin: Juniper

Control ID: bc0d5d0ffe652b4cab1290fa1530df4c925bb948e6a9b575a4a8af70a5e8b123