STIGQter STIGQter: STIG Summary: ArcGIS for Server 10.3 Security Technical Implementation Guide Version: 1 Release: 3 Benchmark Date: 26 Jan 2018:

The ArcGIS Server must be configured such that emergency accounts are never automatically removed or disabled.

DISA Rule

SV-79975r1_rule

Vulnerability Number

V-65485

Group Title

SRG-APP-000234

Rule Version

AGIS-00-000104

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the ArcGIS Server to ensure emergency accounts are never automatically removed or disabled. Substitute the target environment’s values for [bracketed] variables.

Log on to the ArcGIS Server Administrator Directory ([https://[server.domain.com])/arcgis/admin) with an account that has administrative access.

Navigate to security >> psa >> enable to enable the "Primary Site Administrator" account.

Check Contents

Review the ArcGIS Server configuration to ensure emergency accounts are never automatically removed or disabled. Substitute the target environment’s values for [bracketed] variables.

Log on to the ArcGIS Server Administrator Directory ([https://[server.domain.com])/arcgis/admin) (log on when promoted) with an account that has administrative access.

Navigate to security >> psa. Verify that the Primary Site Administrator account has not been disabled.

If the "Primary Site Administrator" account has been disabled, this is a finding.

Vulnerability Number

V-65485

Documentable

False

Rule Version

AGIS-00-000104

Severity Override Guidance

Review the ArcGIS Server configuration to ensure emergency accounts are never automatically removed or disabled. Substitute the target environment’s values for [bracketed] variables.

Log on to the ArcGIS Server Administrator Directory ([https://[server.domain.com])/arcgis/admin) (log on when promoted) with an account that has administrative access.

Navigate to security >> psa. Verify that the Primary Site Administrator account has not been disabled.

If the "Primary Site Administrator" account has been disabled, this is a finding.

Check Content Reference

M

Target Key

2961

Comments