Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-36658 | WN12-00-000004 | SV-51575r2_rule | Medium |
Description |
---|
Administrative accounts may perform any action on a system. Users with administrative accounts must be documented to ensure those with this level of access are clearly identified. |
STIG | Date |
---|---|
Windows Server 2012/2012 R2 Member Server Security Technical Implementation Guide | 2019-09-23 |
Check Text ( C-46838r2_chk ) |
---|
Review the necessary documentation that identifies the members of the Administrators group. If a list of all users belonging to the Administrators group is not maintained with the ISSO, this is a finding. |
Fix Text (F-44704r1_fix) |
---|
Create the necessary documentation that identifies the members of the Administrators group. |