Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-36658 | WN08-00-000005-01 | SV-48275r1_rule | ECLP-1 | Medium |
Description |
---|
Administrative accounts may perform any action on a system. Users with administrative accounts must be documented to ensure those with this level of access are clearly identified. |
STIG | Date |
---|---|
Windows 8 Security Technical Implementation Guide | 2014-01-07 |
Check Text ( C-44953r1_chk ) |
---|
Review the necessary documentation that identifies the members of the Administrators group. If a list of all users belonging to the Administrators group is not maintained with the IAO, this is a finding. |
Fix Text (F-41410r1_fix) |
---|
Create the necessary documentation that identifies the members of the Administrators group. |