Skip to content

The Central Log Server must map the authenticated identity to the individual user or group account for PKI-based authentication.

An XCCDF Rule

Description

Without mapping the certificate used to authenticate to the user account, the ability to determine the identity of the individual user or group will not be available for forensic analysis.

ID
SV-206480r961044_rule
Version
SRG-APP-000177-AU-002650
Severity
Low
References
Updated

Remediation Templates

A Manual Procedure

Configure the Central Log Server to map the authenticated identity to the individual user or group account for PKI-based authentication.