STIGQter STIGQter: STIG Summary: AvePoint Compliance Guardian Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 15 Mar 2023:

Compliance Guardian must accept FICAM-approved third-party credentials.

DISA Rule

SV-256846r890148_rule

Vulnerability Number

V-256846

Group Title

SRG-APP-000404

Rule Version

APCG-00-000035

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure Compliance Guardian to use ADFS Integration.
- Log on to Compliance Guardian with admin account.
- On the Control Panel page in the General Security section, click "Authentication Manager".
- Click "ADFS Integration" to open ADFS Integration Configuration Wizard page and complete the configuration.
- Click "Enable link" of the ADFS Integration row to enable ADFS Integration.
- Back on the Control Panel page in the Account section, click "Users".
- Navigate to "Add User" page.
- Select ADFS Claim from the drop-down list in the "User Type" field.
- Select the Claim Name and input the Claim Value in the "How Would You Like To Retrieve User Information" field.
- Save the settings.

Check Contents

Note: This requirement is Not Applicable if ADFS is not being utilized.

ADFS can be used to federate with approved third-party users.

Check the Compliance Guardian configuration option for ADFS Integration.
- Log on to Compliance Guardian with admin account.
- On the Control Panel page in the General Security section, click "Authentication Manager".
- Verify that the ADFS Integration option is enabled.

If the ADFS Integration is not enabled, this is a finding.

Vulnerability Number

V-256846

Documentable

False

Rule Version

APCG-00-000035

Severity Override Guidance

Note: This requirement is Not Applicable if ADFS is not being utilized.

ADFS can be used to federate with approved third-party users.

Check the Compliance Guardian configuration option for ADFS Integration.
- Log on to Compliance Guardian with admin account.
- On the Control Panel page in the General Security section, click "Authentication Manager".
- Verify that the ADFS Integration option is enabled.

If the ADFS Integration is not enabled, this is a finding.

Check Content Reference

M

Target Key

5531