The VMM must notify the system administrator (SA) and information system security officer (ISSO) of account enabling actions.
DISA Rule
SV-207440r984234_rule
Vulnerability Number
V-207440
Group Title
SRG-OS-000304
Rule Version
SRG-OS-000304-VMM-001100
Severity
CAT II
CCI(s)
- CCI-000015 - Support the management of system accounts using (organization-defined automated mechanisms).
Weight
10
Fix Recommendation
Configure the VMM to notify the SA and ISSO of account enabling actions.
Check Contents
Verify the VMM notifies the SA and ISSO of account enabling actions.
If it does not, this is a finding.
Vulnerability Number
V-207440
Documentable
False
Rule Version
SRG-OS-000304-VMM-001100
Severity Override Guidance
Verify the VMM notifies the SA and ISSO of account enabling actions.
If it does not, this is a finding.
Check Content Reference
M
Target Key
2924