SV-222591r508029_rule
V-222591
SRG-APP-000431
APSC-DV-002370
CAT II
10
Design and configure applications to maintain a separate execution domain for each executing process.
Review the application documentation, the architecture documentation and interview the application administrator.
Identify if the application architecture provides the capability to sandbox executing processes so as to prevent a process in one application domain from sharing another application domain.
Ask the application administrator to demonstrate how the application processes are separated. This may be demonstrated by examining the OS processes running on the system and identifying the separate application processes.
If the application does not maintain a separate execution domain for each executing process, this is a finding.
V-222591
False
APSC-DV-002370
Review the application documentation, the architecture documentation and interview the application administrator.
Identify if the application architecture provides the capability to sandbox executing processes so as to prevent a process in one application domain from sharing another application domain.
Ask the application administrator to demonstrate how the application processes are separated. This may be demonstrated by examining the OS processes running on the system and identifying the separate application processes.
If the application does not maintain a separate execution domain for each executing process, this is a finding.
M
4093