STIGhubSTIGhub
STIGsSearchCompareAbout

STIGhub

A free tool to search and browse the entire DISA STIG library. Saves up to 75% in security compliance research time.

Navigation

  • Browse STIGs
  • Search
  • Compare Versions

Resources

  • About
  • VPAT
  • DISA STIG Library
Powered by Pylon
© 2026 Beacon Cloud Solutions, Inc. All rights reserved.
← Back to AAA Services Security Requirements Guide

V-204700

CAT II (Medium)

AAA Services used to authenticate privileged users for device management must be configured to connect to the management network.

Rule ID

SV-204700r961863_rule

STIG

AAA Services Security Requirements Guide

Version

V2R2

CCIs

CCI-000366

Discussion

Using standardized authentication protocols such as RADIUS, TACACS+, and Kerberos, an authentication server provides centralized and robust authentication services for the management of network components. In order to control access to the servers as well as monitor traffic to them, the authentication servers should only be connected to the management network.

Check Content

If AAA Services are not used for authentication of privileged users to AAA Services, this is not applicable.

Verify AAA Services are configured to connect to the management network. Confirm AAA Services are not dual-homed by physically inspecting the physical LAN connection.

If AAA Services are configured to connect to a non-management network, this is a finding.

Fix Text

Configure AAA Services used to authenticate privileged users for device management to connect to the management network.