SV-76891r1_rule
V-62401
SRG-APP-000133-AS-000092
CF11-03-000092
CAT II
10
Navigate to the "User Manager" page under the "Security" menu. Remove the "Server Updates" role from each user that should not have access to patch management functions.
Within the Administrator Console, navigate to the "User Manager" page under the "Security" menu. Review each defined user and ask the SA if the user should have access to server patch management functions. For each user that should not be able to access patch management functions, review the roles assigned to the user account.
If the user has the "Server Updates" role, this is a finding.
V-62401
False
CF11-03-000092
Within the Administrator Console, navigate to the "User Manager" page under the "Security" menu. Review each defined user and ask the SA if the user should have access to server patch management functions. For each user that should not be able to access patch management functions, review the roles assigned to the user account.
If the user has the "Server Updates" role, this is a finding.
M
2661