Skip to content

II - Mission Support Sensitive

Rules and Groups employed by this XCCDF Profile

  • SRG-APP-000091-DB-000066

    Group
  • Where SQL Server Audit is in use, SQL Server must generate audit records when privileges/permissions are retrieved.

    The system must monitor who/what is reading privilege/permission/role information. This requirement addresses explicit requests for privilege/permission/role membership information. It does not re...
    Rule Medium Severity
  • SRG-APP-000096-DB-000040

    Group
  • SQL Server must produce Trace or Audit records containing sufficient information to establish when the events occurred.

    Information system auditing capability is critical for accurate forensic analysis. Audit record content which may be necessary to satisfy the requirement of this control includes, but is not limite...
    Rule Medium Severity
  • SRG-APP-000097-DB-000041

    Group
  • SQL Server must produce Trace or Audit records containing sufficient information to establish where the events occurred.

    Information system auditing capability is critical for accurate forensic analysis. Audit record content which may be necessary to satisfy the requirement of this control includes, but is not limite...
    Rule Medium Severity
  • SRG-APP-000098-DB-000042

    Group
  • SQL Server must produce Trace or Audit records containing sufficient information to establish the sources (origins) of the events.

    Information system auditing capability is critical for accurate forensic analysis. Audit record content which may be necessary to satisfy the requirement of this control includes, but is not limite...
    Rule Medium Severity
  • SRG-APP-000099-DB-000043

    Group
  • SQL Server must produce Trace or Audit records containing sufficient information to establish the outcome (success or failure) of the events.

    Information system auditing capability is critical for accurate forensic analysis. Audit record content which may be necessary to satisfy the requirement of this control includes, but is not limite...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules