Compliance Guardian must provide automated mechanisms for supporting account management functions.
Overview
| Finding ID | Version | Rule ID | IA Controls | Severity |
| V-256842 | APCG-00-000015 | SV-256842r890136_rule | CCI-000015 | medium |
| Description | ||||
| Remote access (e.g., Remote Desktop Protocol [RDP]) is access to DOD nonpublic information systems by an authorized user (or an information system) communicating through an external, nonorganization-controlled network. Remote access methods include dial-up, broadband, and wireless. Satisfies: SRG-APP-000023, SRG-APP-000025, SRG-APP-000065, SRG-APP-000163, SRG-APP-000164, SRG-APP-000165, SRG-APP-000166, SRG-APP-000167, SRG-APP-000168, SRG-APP-000169, SRG-APP-000170, SRG-APP-000171, SRG-APP-000173, SRG-APP-000174, SRG-APP-000190, SRG-APP-000234, SRG-APP-000291, SRG-APP-000292, SRG-APP-000293, SRG-APP-000294, SRG-APP-000295, SRG-APP-000318, SRG-APP-000319, SRG-APP-000320, SRG-APP-000345, SRG-APP-000397, SRG-APP-000401, SRG-APP-000503, SRG-APP-000505, SRG-APP-000506, SRG-APP-000509 | ||||
| STIG | Date | |||
| AvePoint Compliance Guardian Security Technical Implementation Guide | 2023-02-21 | |||
Related Frameworks
2 paths across 2 frameworks
Related Frameworks
NIST 800-531 mapping
AC-2(1)
1.00
- DISA · V1R1 · disa_xccdf · related
- DISA · 2025-01-23 · disa_cci_list · equivalent
CCI1 mapping
CCI-000015
1.00
- DISA · V1R1 · disa_xccdf · related
Details
Check Text (C-256842r890136_chk)
Compliance Guardian supports integration with Active Directory (AD) for automated account management.
Check the Compliance Guardian configuration to ensure AD Integration is enabled.
- Log on to Compliance Guardian with admin account.
- On the Control Panel page in the General Security section, click "Authentication Manager".
- Navigate to "AD Integration".
- Verify that the "AD Integration" option is enabled.
If the AD Integration option is not enabled, this is a finding.
Fix Text (F-60460r890135_fix)
Configure the Compliance Guardian configuration to ensure AD Integration is enabled.
- Log on to Compliance Guardian with admin account.
- On the Control Panel page in the Authentication Manager section, click "Authentication Manager".
- Navigate to "AD Integration".
- Set the Action of "AD Integration" to "Enable".
- Save settings.
Add AD user or group to Compliance Guardian by Account Manager; realize automated mechanisms through AD account management functions.