SV-206600r617447_rule
V-206600
SRG-APP-000389
SRG-APP-000389-DB-000372
CAT II
10
Modify and/or configure the DBMS and related applications and tools so that users are always required to re-authenticate when changing role or escalating privileges.
Modify and/or configure the DBMS and related applications and tools so that users are always required to re-authenticate when the specified cases needing reauthorization occur.
Review the system documentation and the configuration of the DBMS and related applications and tools.
If there are any circumstances under which a user is not required to re-authenticate when changing role or escalating privileges, this is a finding.
If the information owner has identified additional cases where re-authentication is needed, but there are circumstances where the system does not ask the user to re-authenticate when those cases occur, this is a finding.
V-206600
False
SRG-APP-000389-DB-000372
Review the system documentation and the configuration of the DBMS and related applications and tools.
If there are any circumstances under which a user is not required to re-authenticate when changing role or escalating privileges, this is a finding.
If the information owner has identified additional cases where re-authentication is needed, but there are circumstances where the system does not ask the user to re-authenticate when those cases occur, this is a finding.
M
2902