SV-205845r569188_rule
V-205845
SRG-OS-000480-GPOS-00227
WN19-00-000030
CAT I
10
Establish a policy, at minimum, to prohibit administrative accounts from using applications that access the Internet, such as web browsers, or with potential Internet sources, such as email. Ensure the policy is enforced.
The organization may use technical means such as whitelisting to prevent the use of browsers and mail applications to enforce this requirement.
Determine whether organization policy, at a minimum, prohibits administrative accounts from using applications that access the Internet, such as web browsers, or with potential Internet sources, such as email, except as necessary for local service administration.
If it does not, this is a finding.
The organization may use technical means such as whitelisting to prevent the use of browsers and mail applications to enforce this requirement.
V-205845
False
WN19-00-000030
Determine whether organization policy, at a minimum, prohibits administrative accounts from using applications that access the Internet, such as web browsers, or with potential Internet sources, such as email, except as necessary for local service administration.
If it does not, this is a finding.
The organization may use technical means such as whitelisting to prevent the use of browsers and mail applications to enforce this requirement.
M
2907