SV-213901r1137654_rule
V-213901
SRG-APP-000033-DB-000084
SQL6-D0-000300
CAT I
10
Use GRANT, REVOKE, DENY, ALTER ROLE … ADD MEMBER … and/or ALTER ROLE …. DROP MEMBER statements to add and remove permissions on database-level securables, bringing them into line with the documented requirements.
Review the system documentation to determine the required levels of protection for securables in the database by type of login.
If the database is tempdb, this is not applicable.
Review the permissions actually in place in the database.
If the actual permissions do not match the documented requirements, this is a finding.
Use the supplemental file "Database permission assignments to users and roles.sql".
V-213901
False
SQL6-D0-000300
Review the system documentation to determine the required levels of protection for securables in the database by type of login.
If the database is tempdb, this is not applicable.
Review the permissions actually in place in the database.
If the actual permissions do not match the documented requirements, this is a finding.
Use the supplemental file "Database permission assignments to users and roles.sql".
M
3992