Skip to main content

๐Ÿ’ผ 8.3 Secure all individual non-console administrative access and all remote access to the CDE using multi-factor authentication.

Descriptionโ€‹

Multi-factor authentication requires that a minimum of two of the three authentication methods (see Requirement 8.2 for descriptions of authentication methods) be used for authentication. Using one factor twice (for example, using two separate passwords) is not considered multi-factor authentication.

Similarโ€‹

  • Internal
    • ID: dec-c-18be0c23

Sub Sectionsโ€‹

SectionSub SectionsInternal RulesPoliciesFlags
๐Ÿ’ผ 8.3.1 Incorporate multi-factor authentication for all non-console access into the CDE for personnel with administrative access.1
๐Ÿ’ผ 8.3.2 Incorporate multi-factor authentication for all remote network access originating from outside the entity's network.