Multifactor authentication is defined as: using two or more factors to achieve authentication.
Factors include:
(i) something a user knows (e.g., password/PIN);
(ii) something a user has (e.g., cryptographic identification device, token); or
(iii) something a user is (e.g., biometric). A CAC meets this definition.
A privileged account is defined as an information system account with authorizations of a privileged user.
Network access is defined as access to a DoD information system by a user (or process acting on behalf of a user) communicating via a network connection.
When accessing the AS via a network connection, administrative access to the application server must be CAC-enabled.
|