FireEye - AAA tries local authentication first

Information

The appliance authenticates locally first to obviate the risk of local appliance account access issues. If not successful it tries LDAP, RADIUS, and TACACS+ authentication in turn and in the order specified (they can be in any order).

Solution

Determine which, if any, AAA solutions will be used. Edit the configuration and modify this line, putting the solutions in priority order with 'local' first:\n

aaa authentication login default local [ldap radius tacacs+]

Item Details

Audit Name: TNS FireEye

Category: IDENTIFICATION AND AUTHENTICATION

References: 800-53|IA-2

Plugin: FireEye

Control ID: 2ff2f113d0ea2810c254382fe822622190b8de7624a440e9444217f8ed1bb1c6