1. Home
  2. Security Hardening
  3. DISA STIG Juniper Infrastructure Router V8R29
  4. NET0400 – The network element must authenticate all IGP peers – IS-IS authentication-type

NET0400 – The network element must authenticate all IGP peers – IS-IS authentication-type

Details

A rogue router could send a fictitious routing update to convince a site’s premise router to send traffic to an incorrect or even a rogue destination. This diverted traffic could be analyzed to learn confidential information of the site’s network, or merely used to disrupt the network’s ability to effectively communicate with other networks.

Solution

Configure authentication for all IGP peers.

Supportive Information

The following resource is also helpful.

This security hardening control applies to the following category of controls within NIST 800-53: System and Communications Protection.This control applies to the following type of system Juniper.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles