STIGQter STIGQter: STIG Summary: Nutanix Acropolis Application Server Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 26 Jan 2026:

Nutanix AOS must authenticate users individually prior to using a group authenticator.

DISA Rule

SV-279438r1191100_rule

Vulnerability Number

V-279438

Group Title

SRG-APP-000153-AS-000104

Rule Version

NXAC-AS-000032

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the Nutanix VM application server to use an enterprise user management system to authenticate individual users.

1. Log in to Prism Element.
2. Click the gear icon in the upper-right corner.
3. Navigate to Authentication settings.
4. Add an Active Directory or OpenLDAP server to the directory list.

Alternatively, individual local users can be created within Prism.

1. Log in to Prism Element.
2. Click the gear icon in the upper-right corner.
3. Navigate to Local User Management.
4. Select "+ New Users".

Check Contents

Confirm the Nutanix VM application server is set to use enterprise user management systems. Envoy Reverse Proxy does not support group authenticators.

1. Log in to Prism Element.
2. Click the gear icon in the upper-right corner.
3. Navigate to Authentication settings.

If an Active Directory or OpenLDAP servers are not configured, this is a finding.

Vulnerability Number

V-279438

Documentable

False

Rule Version

NXAC-AS-000032

Severity Override Guidance

Confirm the Nutanix VM application server is set to use enterprise user management systems. Envoy Reverse Proxy does not support group authenticators.

1. Log in to Prism Element.
2. Click the gear icon in the upper-right corner.
3. Navigate to Authentication settings.

If an Active Directory or OpenLDAP servers are not configured, this is a finding.

Check Content Reference

M

Target Key

5729