Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-26720 | SRG-NET-000012 | SV-33963r1_rule | Medium |
Description |
---|
Account management by a designated authority ensures access to network elements is being controlled in a secured manner by granting access to only authorized personnel with the appropriate and necessary privileges. Auditing account creation and modification along with an automatic notification to appropriate individuals will provide the necessary reconciliation that account management procedures are being followed. It is also vital that the termination of accounts is monitored to ensure that authorized accounts remain active and available for use when required. Notifying the individual whose account has been terminated will provide an alert so that the account can be reinstated if it had been terminated by mistake. |
STIG | Date |
---|---|
Network Security Requirements Guide | 2011-12-28 |
Check Text ( None ) |
---|
None |
Fix Text (None) |
---|
None |