1. Home
  2. Security Hardening
  3. CIS F5 Networks V1.0.0 L2
  4. Ensure that Remote Radius is used for Authentication Only

Ensure that Remote Radius is used for Authentication Only

Details

To specify the authentication mechanism that F5 systems use for external (remote) users

Rationale:

Uncontrolled and illegitimate authentication could provide access to unauthorized users

Impact:

Uncontrolled and illegitimate authentication mechanism provides access to illegitimates remote users on the systems. It is important to make sure of the right Authentication mechanism used. Radius is configured as Authentication Only. Radius in turns query LDAP for remote users authentication and authorization.

Solution

1-Log in to the Configuration utility using the administrator account.

2-Navigate to System > Users > Authentication.

3-In the Authentication section, click Change.

4-Select Remote – RADIUS from the User Directory drop-down menu.

5-Define the RADIUS server configuration settings, including the port and shared secret settings:

6- For ‘Service Type’: select ‘Authentication Only’

7-Click Finished.

Supportive Information

The following resource is also helpful.

This security hardening control applies to the following category of controls within NIST 800-53: Access Control.This control applies to the following type of system F5.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles