NIST 800-171 v2

110 security requirements available

3.3.2Basic Requirement

Audit and Accountability

Security Requirement

Ensure that the actions of individual system users can be uniquely traced to those users, so they can be held accountable for their actions.

Discussion

This requirement ensures that the contents of the audit record include the information needed to link the audit event to the actions of an individual to the extent feasible. Organizations consider logging for traceability including results from monitoring of account usage, remote access, wireless connectivity, mobile device connection, communications at system boundaries, configuration settings, physical access, nonlocal maintenance, use of maintenance tools, temperature and humidity, equipment delivery and removal, system component inventory, use of mobile code, and use of Voice over Internet Protocol (VoIP).

Framework
NIST SP 800-171 Rev 2
Family
Audit and Accountability
Requirement Type
basic

Related Frameworks

198 paths across 2 frameworks
NIST 800-536 mappings
AU-11
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
AU-12
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
AU-2
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
AU-3
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
AU-6
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
CCI32 mappings
CCI-000123
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000124
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000125
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000126
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000130
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000131
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000132
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000133
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000134
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000135
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000148
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000149
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000151
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000167
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000168
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000169
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000171
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000172
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-001459
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-001484
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-001485
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-001487
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-001488
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-001571
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-001862
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-001863
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-001910
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-003810
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-003811
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-003817
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-003818
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-003819
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent

Related STIGs

312 STIGs reach this control through 72 CCIs via 800-53 controls AU-11, AU-12, AU-2, AU-3, AU-6. Expand a row to see the responsible NICE and O*NET roles.

Operating System — Desktop

8 STIGs

Operating System — Server

43 STIGs
Oracle Linux 9 Security Technical Implementation Guide
V1R52026-02-1756 of 448 findings match
Show 35 more STIGs in this category →
Oracle Linux 8 Security Technical Implementation Guide
V2R82026-02-1344 of 375 findings match
Anduril NixOS Security Technical Implementation Guide
V1R22025-08-1923 of 103 findings match
Amazon Linux 2023 Security Technical Implementation Guide
V1R32026-02-2722 of 187 findings match
Solaris 11 SPARC Security Technical Implementation Guide
V3R52026-02-1911 of 217 findings match
Solaris 11 X86 Security Technical Implementation Guide
V3R52026-02-1911 of 216 findings match
IBM AIX 7.x Security Technical Implementation Guide
V3R22026-02-069 of 283 findings match
IBM AIX 7.x Security Technical Implementation Guide
32024-08-169 of 283 findings match

Operating System — Mainframe

16 STIGs
Mainframe Product Security Requirements Guide
V3R42025-09-1032 of 194 findings match
Mainframe Product Security Requirements Guide
32024-12-0532 of 193 findings match
IBM z/OS RACF Security Technical Implementation Guide
V9R82026-03-094 of 222 findings match
CA IDMS Security Technical Implementation Guide
V2R12024-09-132 of 74 findings match
IBM z/OS ACF2 Security Technical Implementation Guide
V9R82026-03-092 of 225 findings match
Show 8 more STIGs in this category →
IBM z/OS TSS Security Technical Implementation Guide
V9R82026-03-092 of 230 findings match

Operating System — Mobile

18 STIGs
Show 10 more STIGs in this category →

Network Device

105 STIGs
Riverbed NetIM OS Security Technical Implementation Guide
V1R12025-10-0244 of 154 findings match
Application Layer Gateway Security Requirements Guide
V2R32025-09-1520 of 160 findings match
Network Device Management Security Requirements Guide
V5R32025-02-1115 of 104 findings match
Network Device Management Security Requirements Guide
V5R42025-09-1015 of 105 findings match
Cisco ASA NDM Security Technical Implementation Guide
V2R42025-12-0813 of 47 findings match
Show 97 more STIGs in this category →
Domain Name System (DNS) Security Requirements Guide
42024-07-0211 of 118 findings match
Domain Name System (DNS) Security Requirements Guide
V4R22025-12-1910 of 119 findings match
Cisco ISE NDM Security Technical Implementation Guide
V2R32025-12-118 of 53 findings match
AAA Services Security Requirements Guide
V2R22024-12-047 of 77 findings match
Cisco ASA IPS Security Technical Implementation Guide
V2R12024-08-277 of 23 findings match
Cisco ASA VPN Security Technical Implementation Guide
V2R22024-08-227 of 41 findings match
Firewall Security Requirements Guide
V3R32025-09-227 of 35 findings match
Firewall Security Requirements Guide
32024-12-047 of 34 findings match
BIND 9.x Security Technical Implementation Guide
22024-02-156 of 70 findings match
SDN Controller Security Requirements Guide
22024-05-286 of 34 findings match
BIND 9.x Security Technical Implementation Guide
V3R22026-02-254 of 73 findings match
Cisco ISE NAC Security Technical Implementation Guide
V2R32025-12-103 of 30 findings match
Router Security Requirements Guide
V5R22025-09-103 of 123 findings match
Router Security Requirements Guide
52024-05-283 of 108 findings match
F5 NGINX Security Technical Implementation Guide
V1R12026-01-072 of 32 findings match
Cisco ACI NDM Security Technical Implementation Guide
V1R22025-12-111 of 26 findings match
RUCKUS ICX NDM Security Technical Implementation Guide
V1R12025-05-281 of 25 findings match
SEL-2740S NDM Security Technical Implementation Guide
V1R12019-05-061 of 13 findings match

Database

27 STIGs
Database Security Requirements Guide
V4R52026-02-2639 of 142 findings match
Database Security Requirements Guide
42024-12-0439 of 142 findings match
Show 19 more STIGs in this category →
Oracle MySQL 8.0 Security Technical Implementation Guide
V2R22024-09-0433 of 100 findings match

Web / Application Server

30 STIGs
Application Server Security Requirements Guide
V4R42025-09-1018 of 137 findings match
Application Server Security Requirements Guide
42025-02-1118 of 128 findings match
Show 22 more STIGs in this category →
Web Server Security Requirements Guide
V4R42025-09-109 of 126 findings match
Web Server Security Requirements Guide
42025-02-129 of 124 findings match

Virtualization / Container

35 STIGs
Container Platform Security Requirements Guide
V2R42025-09-1032 of 188 findings match
Container Platform Security Requirements Guide
22025-05-1532 of 187 findings match
Virtual Machine Manager Security Requirements Guide
22024-12-0629 of 193 findings match
Virtual Machine Manager Security Requirements Guide
V2R32025-09-1029 of 198 findings match
Show 27 more STIGs in this category →

Endpoint Security Management

23 STIGs
Central Log Server Security Requirements Guide
V3R42026-02-1217 of 127 findings match
Central Log Server Security Requirements Guide
32024-12-0417 of 125 findings match
HYCU Protege Security Technical Implementation Guide
V1R22026-03-0410 of 55 findings match
Show 15 more STIGs in this category →
ISEC7 Sphere Security Technical Implementation Guide
V3R12024-08-202 of 34 findings match
BlackBerry UEM Security Technical Implementation Guide
V2R12020-12-041 of 16 findings match
Tanium 7.x Security Technical Implementation Guide
V2R32025-05-141 of 98 findings match

Productivity Application

4 STIGs

Uncategorized

3 STIGs