Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-6711 | KVM03.007.00 | SV-6908r1_rule | ECAN-1 | Low |
Description |
---|
Users accessing ISs that they do not access to can lead to the compromise of sensitive data. The IAO will ensure that the KVM switch is configured to restrict users access only to the systems they require. |
STIG | Date |
---|---|
Keyboard Video and Mouse Switch STIG | 2014-08-04 |
Check Text ( C-2723r1_chk ) |
---|
The reviewer will, with the assistance of the IAO, try to access a system not allowed to the user signed onto the network attached KVM switch. |
Fix Text (F-6318r1_fix) |
---|
Reconfigure the network attached KVM switch to restrict users to systems they need to access. |