STIGUI
V-284442CAT II — Medium severitySV-284442r1244818_rule

The Ivanti Policy Secure must be configured to use a unique shared secret for RADIUS clients requesting authentication services.

Rule version IVPS-AA-000026 · STIG v1 · 2026-07-09

Discussion

Using standardized authentication protocols such as RADIUS, TACACS+, and Kerberos provides centralized and robust authentication services for the management of network components. An authentication server is very scalable as it supports many user accounts and authentication sessions with the network components.

Check

1. In the Web UI, navigate to Endpoint Policy >> Radius Client. 2. Review the configuration for each RADIUS Client. 3. Verify "Shared Secret" is set as a required field.

If "Shared Secret" is not set for all defined RADIUS Clients, this is a finding.

Fix

1. In the Web UI, navigate to Endpoint Policy >> Radius Client. 2. Enter "Shared Secret" for each defined RADIUS client.

Identifiers

Group ID
V-284442
Group title
SRG-APP-000516-AAA-000640
Rule ID
SV-284442r1244818_rule
Check ID
C-89007r1244630_chk
Fix ID
F-88912r1244631_fix