UCF STIG Viewer Logo

Applications used for non-local maintenance sessions must protect those sessions through the use of a strong authenticator tightly bound to the user.


Overview

Finding ID Version Rule ID IA Controls Severity
V-35605 SRG-APP-000183-AS-NA SV-46892r1_rule Medium
Description
Non-local maintenance and diagnostic activities are those activities conducted by individuals communicating through a network, either an external network (e.g., the Internet) or an internal network. Examples of types of applications used for non-local maintenance and diagnostic activities are provided below. Use as an example does not imply compliance with policy requirements or approval for use. Examples include but are not limited to: - Terminal Services - Remote Desktop - Dameware - VNC (all variants) Application servers are not used for non-local maintenance sessions.
STIG Date
Application Server Security Requirements Guide 2013-01-08

Details

Check Text ( C-43948r1_chk )
This requirement is NA for the AS SRG.
Fix Text (F-40146r1_fix)
The requirement is NA. No fix is required.