UCF STIG Viewer Logo

The operating system must uniquely identify and must authenticate non-organizational users (or processes acting on behalf of non-organizational users).


Overview

Finding ID Version Rule ID IA Controls Severity
V-33101 SRG-OS-000121-NA SV-43499r1_rule Medium
Description
Non-organizational users include all operating system users other than organizational users which include employees or individuals the organization deems to have equivalent status of employees (e.g., contractors, guest researchers, individuals from allied nations). Rationale for non-applicability: For the purposes of this SRG, a mobile operating system is assumed to support a single human-accessible user account. The only process acting on behalf of a non-organizational user would be one of the carrier or OS vendor. In this case, CCI-00877 addresses the requirement for authentication of such processes.
STIG Date
Mobile Operating System Security Requirements Guide 2013-07-03

Details

Check Text ( C-41360r1_chk )
This requirement is NA for the Mobile OS SRG.
Fix Text (F-37001r1_fix)
The requirement is NA. No fix is required.