CCI-004895
Permit users to invoke the trusted communications path for communications between the user and the organization-defined security functions, including at a minimum, authentication and re-authentication.
1 rule found Severity: Medium

The Ubuntu operating system must require users to reauthenticate for privilege escalation or when changing roles.
1 rule found Severity: Medium

PostgreSQL must require users to reauthenticate when organization-defined circumstances or situations require reauthentication.
1 rule found Severity: Medium

The Cisco ASA VPN gateway must be configured to renegotiate the IPsec Security Association after eight hours or less.
1 rule found Severity: Medium

The Cisco ASA VPN gateway must be configured to renegotiate the IKE security association after 24 hours or less.
1 rule found Severity: Medium

The EDB Postgres Advanced Server must require users to reauthenticate when organization-defined circumstances or situations require reauthentication.
1 rule found Severity: Medium

SSMC must prevent nonprivileged users from executing privileged functions to include disabling, circumventing, or altering implemented security safeguards/countermeasures.
1 rule found Severity: Medium

1 rule found Severity: Medium

1 rule found Severity: Medium

2 rules found Severity: Medium

2 rules found Severity: Medium

2 rules found Severity: Medium

2 rules found Severity: Medium

2 rules found Severity: Medium

2 rules found Severity: Medium

2 rules found Severity: Medium

The Oracle Linux operating system must be configured so that users must provide a password for privilege escalation.
1 rule found Severity: Medium

The Oracle Linux operating system must be configured so users must re-authenticate for privilege escalation.
1 rule found Severity: Medium

1 rule found Severity: Medium

The Oracle Linux operating system must not be configured to bypass password requirements for privilege escalation.
1 rule found Severity: Medium

The MySQL Database Server 8.0 must require users to reauthenticate when organization-defined circumstances or situations require reauthentication.
1 rule found Severity: Medium

Redis Enterprise DBMS must require users to reauthenticate when organization-defined circumstances or situations require reauthentication.
1 rule found Severity: Medium

1 rule found Severity: Low

1 rule found Severity: Medium

1 rule found Severity: Medium

25 rules found Severity: Medium

25 rules found Severity: Medium

24 rules found Severity: Medium

The macOS system must require users to reauthenticate for privilege escalation when using the "sudo" command.
1 rule found Severity: Medium

The application must require users to reauthenticate when organization-defined circumstances or situations require reauthentication.
1 rule found Severity: Medium

Ubuntu 22.04 LTS must require users to reauthenticate for privilege escalation or when changing roles.
1 rule found Severity: Medium

MariaDB must require users to reauthenticate when organization-defined circumstances or situations require reauthentication.
1 rule found Severity: Medium

1 rule found Severity: Medium

1 rule found Severity: Medium

OpenShift must terminate all network connections associated with a communications session at the end of the session, or as follows: for in-band management sessions (privileged sessions), the session must be terminated after 10 minutes of inactivity.
1 rule found Severity: Medium

The OL 8 operating system must not be configured to bypass password requirements for privilege escalation.
1 rule found Severity: Medium

1 rule found Severity: Medium

The RHEL 8 operating system must not be configured to bypass password requirements for privilege escalation.
1 rule found Severity: Medium

1 rule found Severity: Medium

1 rule found Severity: Medium

The SUSE operating system must reauthenticate users when changing authenticators, roles, or escalating privileges.
2 rules found Severity: High

1 rule found Severity: Medium

The SUSE operating system must not be configured to bypass password requirements for privilege escalation.
2 rules found Severity: Medium

1 rule found Severity: Medium

1 rule found Severity: Medium

1 rule found Severity: Medium

1 rule found Severity: Medium

1 rule found Severity: Medium
