UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

The application server must not share resources used to interface with systems operating at different security levels.


Overview

Finding ID Version Rule ID IA Controls Severity
V-35652 SRG-APP-000244-AS-NA SV-46939r1_rule Medium
Description
The purpose of this control is to prevent information, including encrypted representations of information, produced by the actions of a prior user/role (or the actions of a process acting on behalf of a prior user/role) from being available to any current user/role (or current process) that obtains access to a shared system resource (e.g., registers, main memory, secondary storage) after the resource has been released back to the information system. Shared resources include memory, input/output queues, and network interface cards. Multi-level security is out of the scope of this SRG. The requirement is NA.
STIG Date
Application Server Security Requirements Guide 2013-01-08

Details

Check Text ( C-43994r1_chk )
This requirement is NA for the AS SRG.
Fix Text (F-40194r1_fix)
The requirement is NA. No fix is required.