FireEye - AAA lockouts delay further attempts for at least 30 seconds

Information

Authentication through AAA for the account will be blocked during a lockout. Setting this too low can allow faster password-guessing attacks.

Solution

Edit the configuration and add this line:\n

aaa authentication attempts lockout unlock-time 30

Item Details

Audit Name: TNS FireEye

Category: ACCESS CONTROL

References: 800-53|AC-7a., CSCv6|16.7

Plugin: FireEye

Control ID: 2d3dd9f0d0d0fe26d6222621293ce7172250fc7a1e3ed9c24ede490eaea66103