Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-36658 | WN12-00-000004 | SV-51575r1_rule | ECLP-1 | Medium |
Description |
---|
Administrative accounts may perform any action on a system. Users with administrative accounts must be documented to ensure those with this level of access are clearly identified. |
STIG | Date |
---|---|
Windows Server 2012 / 2012 R2 Member Server Security Technical Implementation Guide | 2014-12-18 |
Check Text ( C-46838r1_chk ) |
---|
Review the necessary documentation that identifies the members of the Administrators group. If a list of all users belonging to the Administrators group is not maintained with the IAO, this is a finding. |
Fix Text (F-44704r1_fix) |
---|
Create the necessary documentation that identifies the members of the Administrators group. |