UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

The network element must audit remote sessions for accessing an organizationally defined list of security functions and security-relevant information.


Overview

Finding ID Version Rule ID IA Controls Severity
V-34532 SRG-NET-000066-IDPS-NA SV-45374r1_rule Low
Description
Remote access services enable users outside of the enclave to have access to data and services within the private network. In many instances these connections traverse the Internet. Monitoring of remote access sessions allows organizations to audit user activities and to ensure compliance with the remote access policy. Unless restrictions are put in place, a user connecting to the LAN via remote access can access/perform everything he/she could access/perform as those connected internally. Auditing will ensure unauthorized access to the enclave’s resources and data will not go undetected. Auditing of remote access sessions is performed by the remote access server, not the IDPS.
STIG Date
Intrusion Detection and Prevention Systems (IDPS) Security Requirements Guide 2012-11-19

Details

Check Text ( C-42723r1_chk )
This requirement is NA for IDPS. No fix required.
Fix Text (F-38771r1_fix)
This requirement is NA for IDPS. No fix required.