1. Home
  2. Security Hardening
  3. CIS Cisco Firewall ASA 9 L1 V4 1.0
  4. Ensure ‘aaa authorization exec’ is configured correctly

Ensure ‘aaa authorization exec’ is configured correctly

Details

Limits the access to the privileged EXEC mode

Rationale:

When a user is placed in the privileged EXEC mode, valuable information can be obtained. The AAA authorization exec enforces the segregation of users rights so that only authorized users can get access to the privileged EXEC mode. Once this feature is enabled, the user rights are provided by the authentication servers mentioned in the AAA authentication console and AAA authentication enable schemes.

Solution

Run the following to enable the AAA authorization exec

HOSTNAME(CONFIG)# AAA AUTHORIZATION EXEC AUTHENTICATION-SERVER

Supportive Information

The following resource is also helpful.

This security hardening control applies to the following category of controls within NIST 800-53: Access Control.This control applies to the following type of system Cisco.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles