Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-35098 | SRG-APP-000069-AS-000036 | SV-46385r3_rule | Medium |
Description |
---|
To establish acceptance of system usage policy, a click-through banner at the application server management interface logon is required. The banner shall prevent further activity on the application server unless and until the user executes a positive action to manifest agreement by clicking on a box indicating "OK". |
STIG | Date |
---|---|
Application Server Security Requirements Guide | 2018-09-13 |
Check Text ( C-43486r3_chk ) |
---|
Review application server management interface product documentation and configuration to determine that the logon banner can be displayed until the user takes action to acknowledge the agreement. If the banner screen allows continuation to the application server without user interaction, this is a finding. |
Fix Text (F-39650r3_fix) |
---|
Configure the application server management interface to retain the logon banner on the screen until the user takes explicit action to logon to the server. |