Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-53867 | OSX8-00-02060 | SV-68085r1_rule | Medium |
Description |
---|
Distinct user account databases on each separate system cause problems with username and password policy enforcement. Most approved directory services infrastructure solutions, such as Active Directory, allow centralized management of users and passwords. |
STIG | Date |
---|---|
Apple OS X 10.8 (Mountain Lion) Workstation STIG | 2015-02-10 |
Check Text ( C-54711r1_chk ) |
---|
Ask the SA or IAO if the system is integrated into a directory services infrastructure, such as Active Directory. If the system is not integrated into a directory service infrastructure, this is a finding. Mitigation: If there is no directory services infrastructure available, reduce severity to CAT III. |
Fix Text (F-58699r1_fix) |
---|
Integrate the system into an existing directory services infrastructure, such as Active Directory. |