Overview of Appliance mode

Information

BIG-IP systems have the option of running in Appliance mode. Appliance mode is designed to meet the needs of customers in especially sensitive sectors by limiting the BIG-IP system administrative access to match that of a typical network appliance and not a multi-user UNIX device.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

You can verify that a device is running in Appliance mode from the License screen of the Configuration utility. A line similar to the following example is displayed under Active Modules:

Appliance Mode (TMSH Only, No Root or Bash Access)

F5 licenses the Appliance mode option free of charge upon request. For questions regarding licensing the Appliance mode option, contact your F5 Sales Representative.

See Also

https://support.f5.com/csp/article/K53108777#link_01

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-10, CAT|II, CCI|CCI-000054, Rule-ID|SV-74521r2_rule, STIG-ID|F5BI-DM-000003, Vuln-ID|V-60091

Plugin: F5

Control ID: da756150fa100c21aabf12c8b6ae868e9ac034b8e581d4f3e35719faf7c5d73c