Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-57241 | SRG-OS-000338-GPOS-00130 | SV-71501r1_rule | Medium |
Description |
---|
Without the capability to select a user session to capture/record or view/hear, investigations into suspicious or harmful events would be hampered by the volume of information captured. The volume of information captured may also adversely impact the operation of the network. Session audits may include monitoring keystrokes, screen monitoring software, remote desktop recording, screen mirroring, and recording information and/or file transfers. |
STIG | Date |
---|---|
General Purpose Operating System SRG | 2014-12-17 |
Check Text ( C-57851r1_chk ) |
---|
Verify the operating system provides the capability for authorized users to select a user session to capture/record or view/hear. If it does not, this is a finding. |
Fix Text (F-62175r1_fix) |
---|
Configure the operating system to provide the capability for authorized users to select a user session to capture/record or view/hear. |