SV-90941r1_rule
V-76253
SRG-APP-000317-NDM-000282
CACT-NM-000149
CAT II
10
Establish and document a procedure that requires the changing of the account of last resort and root account password when users with knowledge of the password leave the group. To change the password:
1. Log on to CounterACT's Administrator UI.
2. From the menu, select Tools >> Options >> User Console and Options >> Password and Login.
3. Enter a new password.
Note: Use of a cryptographically generated password is recommended. Password must be stored in a locked safe and used only when necessary since individual accounts are required to be used to ensure non-repudiation.
Review the documentation to verify that a procedure exists to change the account of last resort and root account password when users with knowledge of the password leave the group.
If a procedure does not exist to change the account of last resort and root account password when users with knowledge of the password leave the group, this is a finding.
V-76253
False
CACT-NM-000149
Review the documentation to verify that a procedure exists to change the account of last resort and root account password when users with knowledge of the password leave the group.
If a procedure does not exist to change the account of last resort and root account password when users with knowledge of the password leave the group, this is a finding.
M
3225