Skip to content

Nutanix AOS must prevent nonprivileged users from executing privileged functions to include disabling, circumventing, or altering implemented security safeguards/countermeasures.

An XCCDF Rule

Description

Preventing nonprivileged users from executing privileged functions mitigates the risk that unauthorized individuals or processes may gain unnecessary access to information or privileges. Restricting nonprivileged users also prevents an attacker, who has gained access to a nonprivileged account, from elevating privileges, creating accounts, and performing system checks and maintenance.

ID
SV-254101r846391_rule
Version
NUTX-AP-000070
Severity
Medium
References
Updated

Remediation Templates

A Manual Procedure

Assign the privileged users identified by the ISSM to the Cluster Admin role.