UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

Applications that are designed and intended to address incident response scenarios must provide a configurable capability to automatically disable an information system if any of the organization defined security violations are detected.


Overview

Finding ID Version Rule ID IA Controls Severity
V-35603 SRG-APP-000181-AS-NA SV-46890r1_rule Medium
Description
When responding to a security incident, a capability must exist allowing authorized personnel to disable a particular system if the system exhibits a security violation and the organization determines an action is warranted. Organizations shall define a list of security violations that warrant an immediate disabling of a system. Application servers are not designed to address incident response scenarios. This requirement does not apply.
STIG Date
Application Server Security Requirements Guide 2013-01-08

Details

Check Text ( C-43946r1_chk )
This requirement is NA for the AS SRG.
Fix Text (F-40144r1_fix)
The requirement is NA. No fix is required.