II - Mission Support Public
Rules and Groups employed by this XCCDF Profile
-
SRG-APP-000507-DB-000357
<GroupDescription></GroupDescription>Group -
SQL Server must generate Trace or Audit records when unsuccessful accesses to designated objects occur.
<VulnDiscussion>Without tracking all or selected types of access to all or selected objects (tables, views, procedures, functions, etc.), it ...Rule Medium Severity -
SRG-APP-000507-DB-000356
<GroupDescription></GroupDescription>Group -
SQL Server must generate Trace or Audit records when successful accesses to designated objects occur.
<VulnDiscussion>Without tracking all or selected types of access to all or selected objects (tables, views, procedures, functions, etc.), it ...Rule Medium Severity -
SRG-APP-000502-DB-000349
<GroupDescription></GroupDescription>Group -
Trace or Audit records must be generated when unsuccessful attempts to delete categorized information (e.g., classification levels/security levels) occur.
<VulnDiscussion>Changes in categorized information must be tracked. Without an audit trail, unauthorized access to protected data could go un...Rule Medium Severity -
SRG-APP-000502-DB-000348
<GroupDescription></GroupDescription>Group -
Trace or Audit records must be generated when categorized information (e.g., classification levels/security levels) is deleted.
<VulnDiscussion>Changes in categorized information must be tracked. Without an audit trail, unauthorized access to protected data could go un...Rule Medium Severity -
SRG-APP-000501-DB-000337
<GroupDescription></GroupDescription>Group -
SQL Server must generate Trace or Audit records when unsuccessful attempts to drop locally-defined security objects occur.
<VulnDiscussion>SQL Server protects its built-in security objects (tables, views, functions, procedures, etc.) from alteration by database us...Rule Medium Severity -
SRG-APP-000501-DB-000336
<GroupDescription></GroupDescription>Group -
SQL Server must generate Trace or Audit records when locally-defined security objects are dropped.
<VulnDiscussion>SQL Server protects its built-in security objects (tables, views, functions, procedures, etc.) from alteration by database us...Rule Medium Severity -
SRG-APP-000496-DB-000335
<GroupDescription></GroupDescription>Group -
SQL Server must generate Trace or Audit records when unsuccessful attempts to modify locally-defined security objects occur.
<VulnDiscussion>SQL Server protects its built-in security objects (tables, views, functions, procedures, etc.) from alteration by database us...Rule Medium Severity -
SRG-APP-000498-DB-000346
<GroupDescription></GroupDescription>Group -
Trace or Audit records must be generated when categorized information (e.g., classification levels/security levels) is created.
<VulnDiscussion>Changes in categorized information must be tracked. Without an audit trail, unauthorized access to protected data could go un...Rule Medium Severity -
SRG-APP-000498-DB-000347
<GroupDescription></GroupDescription>Group -
Trace or Audit records must be generated when unsuccessful attempts to create categorized information (e.g., classification levels/security levels) occur.
<VulnDiscussion>Changes in categorized information must be tracked. Without an audit trail, unauthorized access to protected data could go un...Rule Medium Severity -
SRG-APP-000498-DB-000346
<GroupDescription></GroupDescription>Group -
Trace or Audit records must be generated when categorized information (e.g., classification levels/security levels) is modified.
<VulnDiscussion>Changes in categorized information must be tracked. Without an audit trail, unauthorized access to protected data could go un...Rule Medium Severity
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.