SV-84423r1_rule
V-69801
SRG-APP-000118
EX13-EG-000050
CAT II
10
Update the EDSP.
Restrict any unauthorized groups' or users' read access to the audit logs.
Review the Email Domain Security Plan (EDSP).
Determine the authorized groups or users that should have read access to the audit data.
If any group or user has read access to the audit data that is not documented in the EDSP, this is a finding.
V-69801
False
EX13-EG-000050
Review the Email Domain Security Plan (EDSP).
Determine the authorized groups or users that should have read access to the audit data.
If any group or user has read access to the audit data that is not documented in the EDSP, this is a finding.
M
3099