NIST 800-53 Rev 5

424 controls available

IA-11lowmoderatehigh

Re-authentication

Identification and Authentication

Control Statement

Require users to re-authenticate when {{ insert: param, ia-11_odp }}.

Discussion

In addition to the re-authentication requirements associated with device locks, organizations may require re-authentication of individuals in certain situations, including when roles, authenticators or credentials change, when security categories of systems change, when the execution of privileged functions occurs, after a fixed time period, or periodically.

Framework
NIST SP 800-53 Rev 5
Family
Identification and Authentication
Baselines
low, moderate, high

Related Frameworks

4 paths across 1 framework
CCI4 mappings
CCI-002036
1.00
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-002037
1.00
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-002038
1.00
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-002039
1.00
  • DISA · 2025-01-23 · disa_cci_list · equivalent

Related STIGs

69 STIGs reach this control through 4 CCIs. Expand a row to see the responsible NICE and O*NET roles.

Operating System — Desktop

6 STIGs

Operating System — Server

19 STIGs
Show 11 more STIGs in this category →

Network Device

18 STIGs
Application Layer Gateway Security Requirements Guide
V2R32025-09-151 of 160 findings match
F5 NGINX Security Technical Implementation Guide
V1R12026-01-071 of 32 findings match
Show 10 more STIGs in this category →

Database

5 STIGs
Database Security Requirements Guide
42024-12-041 of 142 findings match
Database Security Requirements Guide
V4R52026-02-261 of 142 findings match

Web / Application Server

7 STIGs

Virtualization / Container

10 STIGs

Cloud / Identity Service

2 STIGs

Endpoint Security Management

2 STIGs
Central Log Server Security Requirements Guide
32024-12-041 of 125 findings match
Central Log Server Security Requirements Guide
V3R42026-02-121 of 127 findings match