UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

The IDPS must notify the user of organizationally defined security related changes to the users account occurring during the organizationally defined time period.


Overview

Finding ID Version Rule ID IA Controls Severity
V-34519 SRG-NET-000052-IDPS-00046 SV-45361r1_rule Low
Description
Providing users with information regarding organizationally defined security related changes to the user’s account occurring during the organizationally defined time period, allows the user to determine if any unauthorized activity has occurred and gives them an opportunity to notify administrators. Changes to the user account during a specific time period could be an indication of the account being compromised. Hence, without notification to the user, the compromise could go undetected.
STIG Date
Intrusion Detection and Prevention Systems (IDPS) Security Requirements Guide 2012-11-19

Details

Check Text ( C-42709r1_chk )
Verify the system is configured to notify the user of organizationally defined security related changes to the user’s account occurring during the organizationally defined time period by logging on to the management console.

If the system does not notify the user of organizationally defined security related changes to the user’s account occurring during the organizationally defined time period, this is a finding.
Fix Text (F-38757r1_fix)
Configure the IDPS management console to display the organizationally defined security-related changes to the user’s account occurring during the organizationally defined time period.