SV-223251r612235_rule
V-223251
SRG-APP-000180
SP13-00-000080
CAT II
10
Configure SharePoint to uniquely identify and authenticate non-organizational users (or processes acting on behalf of non-organizational users).
Navigate to Central Administration website.
Click on "Manage web applications".
Click the web application name.
Click the "Authentication Providers" button in the "Web Applications" ribbon.
Click each Zone, and clear the "Enable anonymous access" check box.
Click "Save".
Repeat steps for each web application.
Review the SharePoint configuration to ensure non-organizational users (or processes acting on behalf of non-organizational users) are uniquely identified and authenticated.
Navigate to Central Administration website.
Click on "Manage web applications".
Click the web application name.
Click the "Authentication Providers" button in the "Web Applications" ribbon.
Click each Zone, and verify that the "Enable anonymous access" check box is not selected.
If it is selected and the web application zone is not defined in the system security plan as allowing anonymous access, this is a finding.
Repeat steps for each web application.
V-223251
False
SP13-00-000080
Review the SharePoint configuration to ensure non-organizational users (or processes acting on behalf of non-organizational users) are uniquely identified and authenticated.
Navigate to Central Administration website.
Click on "Manage web applications".
Click the web application name.
Click the "Authentication Providers" button in the "Web Applications" ribbon.
Click each Zone, and verify that the "Enable anonymous access" check box is not selected.
If it is selected and the web application zone is not defined in the system security plan as allowing anonymous access, this is a finding.
Repeat steps for each web application.
M
4096