Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-225240 | WN12-00-000004 | SV-225240r569185_rule | Medium |
Description |
---|
Administrative accounts may perform any action on a system. Users with administrative accounts must be documented to ensure those with this level of access are clearly identified. |
STIG | Date |
---|---|
Microsoft Windows Server 2012/2012 R2 Member Server Security Technical Implementation Guide | 2022-09-06 |
Check Text ( C-26939r471062_chk ) |
---|
Review the necessary documentation that identifies the members of the Administrators group. If a list of all users belonging to the Administrators group is not maintained with the ISSO, this is a finding. |
Fix Text (F-26927r471063_fix) |
---|
Create the necessary documentation that identifies the members of the Administrators group. |