Check: SRG-APP-000815-AU-000260
Central Log Server SRG:
SRG-APP-000815-AU-000260
(in versions v3 r2 through v3 r1)
Title
The Central Log Server must require users to be individually authenticated before granting access to the shared accounts or resources. (Cat II impact)
Discussion
Individual authentication prior to shared group authentication mitigates the risk of using group accounts or authenticators.
Check Content
Verify the Central Log Server is configured to require users to be individually authenticated before granting access to the shared accounts or resources. If the Central Log Server is not configured to require users to be individually authenticated before granting access to the shared accounts or resources, this is a finding.
Fix Text
Configure the Central Log Server to require users to be individually authenticated before granting access to the shared accounts or resources.
Additional Identifiers
Rule ID: SV-263572r982431_rule
Vulnerability ID: V-263572
Group Title: SRG-APP-000815
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-004045 |
Require users to be individually authenticated before granting access to the shared accounts or resources. |
Controls
Number | Title |
---|---|
No controls are assigned to this check |