mirror of
https://github.com/cisagov/manage.get.gov.git
synced 2025-08-04 17:01:56 +02:00
1 KiB
1 KiB
implementation-status | control-origination | |||||
---|---|---|---|---|---|---|
|
|
ia-2.8 - [catalog] Access to Accounts — Replay Resistant
Control Statement
Implement replay-resistant authentication mechanisms for access to No value found.
Control guidance
Authentication processes resist replay attacks if it is impractical to achieve successful authentications by replaying previous authentication messages. Replay-resistant techniques include protocols that use nonces or challenges such as time synchronous or cryptographic authenticators.
Control assessment-objective
replay-resistant authentication mechanisms for access to No value found are implemented.
What is the solution and how is it implemented?
Add control implementation description here for control ia-2.8