CCI-003687
CCI-003687 Definition
Limit the number of unsuccessful biometric logon attempts to an organization-defined number.
| Status | |
| Type | CheckType.policy |
Master Assessment Datasheet
Implementation Guidance
Determine if unsuccessful biometric logon attempts are limited to [Assignment: the number of unsuccessful biometric logon attempts is defined].
Validation Procedures
Examine: [SELECT FROM: Access control policy; procedures addressing unsuccessful logon attempts on biometric devices; system design documentation; system configuration settings and associated documentation; system audit records; system security plan; other relevant documents or records]. Interview: [SELECT FROM: System/network administrators; organizational personnel with information security responsibilities]. Test: [SELECT FROM: Mechanisms implementing access control policy for unsuccessful logon attempts].