NIST 800-53 Rev 5

424 controls available

AC-2(3)moderatehigh

Disable Accounts

Access Control

Control Statement

Disable accounts within {{ insert: param, ac-02.03_odp.01 }} when the accounts:

Discussion

Disabling expired, inactive, or otherwise anomalous accounts supports the concepts of least privilege and least functionality which reduce the attack surface of the system.

Framework
NIST SP 800-53 Rev 5
Family
Access Control
Baselines
moderate, high

Related Frameworks

5 paths across 1 framework
CCI5 mappings
CCI-000017
1.00
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000217
1.00
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-003627
1.00
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-003628
1.00
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-003629
1.00
  • DISA · 2025-01-23 · disa_cci_list · equivalent

Related STIGs

238 STIGs reach this control through 93 CCIs. Expand a row to see the responsible NICE and O*NET roles.

Operating System — Desktop

7 STIGs

Operating System — Server

46 STIGs
Amazon Linux 2023 Security Technical Implementation Guide
V1R32026-02-2711 of 187 findings match
Oracle Linux 8 Security Technical Implementation Guide
V2R82026-02-1311 of 375 findings match
Show 38 more STIGs in this category →
Oracle Linux 9 Security Technical Implementation Guide
V1R52026-02-179 of 448 findings match
IBM AIX 7.x Security Technical Implementation Guide
V3R22026-02-066 of 283 findings match
IBM AIX 7.x Security Technical Implementation Guide
32024-08-166 of 283 findings match
Solaris 11 X86 Security Technical Implementation Guide
V3R52026-02-196 of 216 findings match
Anduril NixOS Security Technical Implementation Guide
V1R22025-08-193 of 103 findings match

Operating System — Mainframe

35 STIGs
Mainframe Product Security Requirements Guide
V3R42025-09-1016 of 194 findings match
Mainframe Product Security Requirements Guide
32024-12-0516 of 193 findings match
IBM z/OS RACF Security Technical Implementation Guide
V9R82026-03-0912 of 222 findings match
IBM z/OS ACF2 Security Technical Implementation Guide
V9R82026-03-0911 of 225 findings match
IBM z/OS TSS Security Technical Implementation Guide
V9R82026-03-0911 of 230 findings match
IBM z/OS TSS Security Technical Implementation Guide
92025-06-2411 of 231 findings match
Show 27 more STIGs in this category →
CA IDMS Security Technical Implementation Guide
V2R12024-09-131 of 74 findings match

Operating System — Mobile

13 STIGs
Show 5 more STIGs in this category →

Network Device

55 STIGs
AAA Services Security Requirements Guide
V2R22024-12-0419 of 77 findings match
Show 47 more STIGs in this category →
Cisco ISE NDM Security Technical Implementation Guide
V2R32025-12-116 of 53 findings match
Network Device Management Security Requirements Guide
V5R32025-02-116 of 104 findings match
Network Device Management Security Requirements Guide
V5R42025-09-106 of 105 findings match
Cisco ASA NDM Security Technical Implementation Guide
V2R42025-12-085 of 47 findings match
Cisco ACI NDM Security Technical Implementation Guide
V1R22025-12-112 of 26 findings match
Domain Name System (DNS) Security Requirements Guide
V4R22025-12-192 of 119 findings match
RUCKUS ICX NDM Security Technical Implementation Guide
V1R12025-05-281 of 25 findings match

Database

26 STIGs
Database Security Requirements Guide
V4R52026-02-263 of 142 findings match
Database Security Requirements Guide
42024-12-043 of 142 findings match
Show 18 more STIGs in this category →

Web / Application Server

8 STIGs

Virtualization / Container

23 STIGs
Container Platform Security Requirements Guide
V2R42025-09-1017 of 188 findings match
Container Platform Security Requirements Guide
22025-05-1517 of 187 findings match
Virtual Machine Manager Security Requirements Guide
22024-12-0616 of 193 findings match
Virtual Machine Manager Security Requirements Guide
V2R32025-09-1016 of 198 findings match
Show 15 more STIGs in this category →
Kubernetes Security Technical Implementation Guide
V2R62026-02-122 of 92 findings match

Cloud / Identity Service

3 STIGs

Endpoint Security Management

19 STIGs
Central Log Server Security Requirements Guide
V3R42026-02-1210 of 127 findings match
Central Log Server Security Requirements Guide
32024-12-0410 of 125 findings match
HYCU Protege Security Technical Implementation Guide
V1R22026-03-046 of 55 findings match
Tanium 7.x Security Technical Implementation Guide
V2R32025-05-146 of 98 findings match
Show 11 more STIGs in this category →
BlackBerry UEM Security Technical Implementation Guide
V2R12020-12-042 of 16 findings match

Productivity Application

3 STIGs