STIGQter STIGQter: STIG Summary: MarkLogic Server v9 Security Technical Implementation Guide Version: 3 Release: 2 Benchmark Date: 24 Oct 2024:

MarkLogic Server must uniquely identify and authenticate organizational users (or processes acting on behalf of organizational users).

DISA Rule

SV-220363r960969_rule

Vulnerability Number

V-220363

Group Title

SRG-APP-000148-DB-000103

Rule Version

ML09-00-003500

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure MarkLogic settings to uniquely identify and authenticate all organizational users who log on/connect to the system.

Perform the fix from the MarkLogic Server Admin Interface with a user that holds administrative-level privileges.

1. Click the Groups icon.
2. Click the group in which the App Server to be checked resides (e.g., Default).
3. Click the App Servers icon on the left tree menu.
4. Select each of the App Servers.
5. Inspect the selected authentication method. If "application-level" is selected and a user other than "nobody" (or equivalent) is set as the default user, then change the default user to "nobody".

Check Contents

Review DBMS settings to determine whether organizational users are uniquely identified and authenticated when logging on/connecting to the system.

Perform the check from the MarkLogic Server Admin Interface with a user that holds administrative-level privileges.

1. Click the Groups icon.
2. Click the group in which the App Server to be checked resides (e.g., Default).
3. Click the App Servers icon on the left tree menu.
4. Select each of the App Servers.
5. Inspect the selected authentication method. If "application-level" is selected and a user other than "nobody" (or equivalent) is set as the default user, this is a finding.

Vulnerability Number

V-220363

Documentable

False

Rule Version

ML09-00-003500

Severity Override Guidance

Review DBMS settings to determine whether organizational users are uniquely identified and authenticated when logging on/connecting to the system.

Perform the check from the MarkLogic Server Admin Interface with a user that holds administrative-level privileges.

1. Click the Groups icon.
2. Click the group in which the App Server to be checked resides (e.g., Default).
3. Click the App Servers icon on the left tree menu.
4. Select each of the App Servers.
5. Inspect the selected authentication method. If "application-level" is selected and a user other than "nobody" (or equivalent) is set as the default user, this is a finding.

Check Content Reference

M

Target Key

4064