UCF STIG Viewer Logo

Applications that are designed and intended to address incident response scenarios must provide a configurable capability to automatically disable an information system if any of the organization defined security violations are detected.


Overview

Finding ID Version Rule ID IA Controls Severity
V-35603 SRG-APP-000181-AS-NA SV-46890r1_rule Medium
Description
When responding to a security incident, a capability must exist allowing authorized personnel to disable a particular system if the system exhibits a security violation and the organization determines an action is warranted. Organizations shall define a list of security violations that warrant an immediate disabling of a system. Application servers are not designed to address incident response scenarios. This requirement does not apply.
STIG Date
Application Server Security Requirements Guide 2013-01-08

Details

Check Text ( C-43946r1_chk )
This requirement is NA for the AS SRG.
Fix Text (F-40144r1_fix)
The requirement is NA. No fix is required.