CCI-000770
The organization requires individuals to be authenticated with an individual authenticator when a group authenticator is employed.
The WebSphere Application Server users in a local user registry group must be authorized for that group.
1 rule found Severity: Medium

1 rule found Severity: High

The macOS system must require individuals to be authenticated with an individual authenticator prior to using a group authenticator.
2 rules found Severity: Medium

2 rules found Severity: Medium

The network device must be configured to authenticate each administrator prior to authorizing privileges based on assignment of group or role.
4 rules found Severity: Medium

The BIG-IP appliance must be configured to ensure administrators are authenticated with an individual authenticator prior to using a group authenticator.
1 rule found Severity: Medium

The F5 BIG-IP appliance must be configured to use multifactor authentication (MFA) for interactive logins.
1 rule found Severity: High

Direct logins to the AIX system must not be permitted to shared accounts, default accounts, application accounts, and utility accounts.
1 rule found Severity: Medium

1 rule found Severity: Medium

1 rule found Severity: Medium

ONTAP must be configured to authenticate each administrator prior to authorizing privileges based on assignment of group or role.
1 rule found Severity: Medium

The Oracle Linux operating system must uniquely identify and must authenticate organizational users (or processes acting on behalf of organizational users) using multifactor authentication.
1 rule found Severity: Medium

The Riverbed NetProfiler must be configured to authenticate each administrator prior to authorizing privileges based on roles.
1 rule found Severity: High

1 rule found Severity: Medium

The TippingPoint SMS must be configured to use an authentication server for the purpose of authenticating users prior to granting administrative access and to enforce access restrictions.
1 rule found Severity: High

1 rule found Severity: Medium

The application must ensure users are authenticated with an individual authenticator prior to using a group authenticator.
1 rule found Severity: Medium

AOS must be configured to use DOD public key infrastructure (PKI) as multifactor authentication (MFA) for interactive logins.
1 rule found Severity: High

1 rule found Severity: Medium

1 rule found Severity: Medium

1 rule found Severity: Medium

2 rules found Severity: Medium

The operating system must require individuals to be authenticated with an individual authenticator prior to using a group authenticator.
2 rules found Severity: Medium

The ESXi host must uniquely identify and must authenticate organizational users by using Active Directory.
2 rules found Severity: Low
