UCF STIG Viewer Logo

The network element must notify the appropriate individuals when account disabling actions are taken.


Overview

Finding ID Version Rule ID IA Controls Severity
V-26718 SRG-NET-000010 SV-33961r1_rule Medium
Description
Account management by a designated authority ensures access to network elements is being controlled in a secured manner by granting access to only authorized personnel with the appropriate and necessary privileges. Auditing account creation and modification along with an automatic notification to appropriate individuals will provide the necessary reconciliation that account management procedures are being followed. It is also vital that the disablement of accounts is monitored to ensure that authorized active accounts remain enabled and available for use when required. Notifying the individual whose account has been disabled will provide an alert so that the account can be enabled if it had been disabled by mistake.
STIG Date
Network Security Requirements Guide 2011-12-28

Details

Check Text ( None )
None
Fix Text (None)
None