STIGQter STIGQter: STIG Summary: Nutanix Acropolis Application Server Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 26 Jan 2026:

Nutanix AOS must enforce access restrictions associated with changes to configuration and software libraries.

DISA Rule

SV-279431r1191079_rule

Vulnerability Number

V-279431

Group Title

SRG-APP-000380-AS-000088

Rule Version

NXAC-AS-000024

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the Nutanix VM application server Prism Element to use RBAC with an organization-approved directory (AD, LDAP).

1. Log in to Prism Element.
2. Select the gear icon in the top-right corner.
3. Select "Authentication" from the left navigation pane.
4. Add an authenticated organization-approved directory.
5. Set up role mappings for users and/or groups.

Check Contents

Confirm Prism Element is set up with Role-Based Access Control (RBAC).

1. Log in to Prism Element.
2. Select the gear icon in the top-right corner.
3. Select "Authentication" from the left navigation pane.

If no organization-approved directory (AD /LDAP) is listed, this is a finding.

4. Next, select "Role Mapping".

If no role mappings are listed, this is a finding.

Vulnerability Number

V-279431

Documentable

False

Rule Version

NXAC-AS-000024

Severity Override Guidance

Confirm Prism Element is set up with Role-Based Access Control (RBAC).

1. Log in to Prism Element.
2. Select the gear icon in the top-right corner.
3. Select "Authentication" from the left navigation pane.

If no organization-approved directory (AD /LDAP) is listed, this is a finding.

4. Next, select "Role Mapping".

If no role mappings are listed, this is a finding.

Check Content Reference

M

Target Key

5729