Installation guide
Protogate Freeway Requirements Specification (SRS) Chapter 3. Requirements
3.8.4. GEN000400 - Logon Warning Banner Display
Summary The Department of Defense (DoD) login banner must be displayed immediately prior to, or
as part of, console login prompts.
Notes Failure to display the login banner prior to a logon attempt will negate legal proceedings
resulting from unauthorized access to system resources.
3.8.5. GEN000440 - Logging Login Attempts
Summary Successful and unsuccessful logins and logouts must be logged.
Notes Monitoring and recording successful and unsuccessful logins assists in tracking unauthorized
access to the system. Without this logging, the ability to track unauthorized activity to
specific user accounts may be diminished.
3.8.6. GEN000560 - Password Protect Enabled Accounts
Summary The system must not have accounts configured with blank or null passwords.
Notes If an account is configured for password authentication but does not have an assigned
password, it may be possible to log into the account without authentication. If the root user is
configured without a password, the entire system may be compromised. For user accounts not
using password authentication, the account must be configured with a password lock value
instead of a blank or null value.
3.8.7. GEN001060 - Log Root Access Attempts
Summary The system must log successful and unsuccessful access to the root account.
Notes If successful and unsuccessful logins and logouts are not monitored or recorded, access
attempts cannot be tracked. Without this logging, it may be impossible to track unauthorized
access to the system.
3.8.8. GEN001100 - Encrypting Root Access
Summary Root passwords must never be passed over a network in clear text form.
Protogate DC-900-2021A 15