CCI-000058
The information system provides the capability for users to directly initiate session lock mechanisms.
1 rule found Severity: Medium

Multi-factor authentication must be enabled and enforced on the Tanium Server for all access and all accounts.
1 rule found Severity: Medium

2 rules found Severity: Medium

The Ubuntu operating system must be configured for users to directly initiate a session lock for all connection types.
1 rule found Severity: Medium

The Ubuntu operating system must allow users to directly initiate a session lock for all connection types.
1 rule found Severity: Medium

1 rule found Severity: Medium

The Oracle Linux operating system must enable a user session lock until that user re-establishes access using established identification and authentication procedures.
1 rule found Severity: Medium

Multifactor authentication must be enabled and enforced on the Tanium Server for all access and all accounts.
1 rule found Severity: Medium

1 rule found Severity: Medium

1 rule found Severity: Medium

OL 8 must enable a user session lock until that user reestablishes access using established identification and authentication procedures for graphical user sessions.
1 rule found Severity: Medium

OL 8 must enable a user session lock until that user re-establishes access using established identification and authentication procedures for command line sessions.
1 rule found Severity: Medium

1 rule found Severity: Medium

OL 8 must enable a user session lock until that user reestablishes access using established identification and authentication procedures for command line sessions.
1 rule found Severity: Medium

OL 8 must be able to initiate directly a session lock for all connection types using smartcard when the smartcard is removed.
1 rule found Severity: Medium

RHEL 9 must be able to initiate directly a session lock for all connection types using smart card when the smart card is removed.
1 rule found Severity: Medium

RHEL 9 must prevent a user from overriding the disabling of the graphical user smart card removal action.
1 rule found Severity: Medium

RHEL 9 must enable a user session lock until that user re-establishes access using established identification and authentication procedures for graphical user sessions.
1 rule found Severity: Medium

RHEL 9 must prevent a user from overriding the screensaver lock-enabled setting for the graphical user interface.
1 rule found Severity: Medium

2 rules found Severity: Medium

2 rules found Severity: Low
