SV-207280r615936_rule
V-207280
SRG-APP-000119
EX13-MB-000070
CAT II
10
Update the EDSP.
Restrict any unauthorized groups' or users' modify permissions for the audit logs.
Review the Email Domain Security Plan (EDSP).
Determine the authorized groups or users that should have access to the audit data.
If any group or user has modify privileges for the audit data that is not documented in the EDSP, this is a finding.
V-207280
False
EX13-MB-000070
Review the Email Domain Security Plan (EDSP).
Determine the authorized groups or users that should have access to the audit data.
If any group or user has modify privileges for the audit data that is not documented in the EDSP, this is a finding.
M
2923