1. Home
  2. Security Hardening
  3. TNS Huawei VRP Best Practices
  4. Huawei: Simple Password Authentication is not used.

Huawei: Simple Password Authentication is not used.

Details

If a simple password is displayed in the configuration, anyone that is able to view the configuration, on system or on backup, would have access to the password.nnIf all user-interfaces are configured for authentication and there is a FAILED result, this could be a result of the ‘user-interfaces maximum-vty’ is configured for more terminals than are configured.

Solution

Use password cipher in all configuration files. When configuring on system, a simple password should be converted to cipher.

This security hardening control applies to the following category of controls within NIST 800-53: Identification and Authentication.This control applies to the following type of system Huawei.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles