III - Administrative Sensitive
Rules and Groups employed by this XCCDF Profile
-
SRG-APP-000516
<GroupDescription></GroupDescription>Group -
Back-up copies of the application software or source code must be stored in a fire-rated container or stored separately (offsite).
<VulnDiscussion>Application developers and application administrators must take steps to ensure continuity of development effort and operatio...Rule Medium Severity -
SRG-APP-000516
<GroupDescription></GroupDescription>Group -
Procedures must be in place to assure the appropriate physical and technical protection of the backup and restoration of the application.
<VulnDiscussion>Protection of backup and restoration assets is essential for the successful restore of operations after a catastrophic failur...Rule Medium Severity -
SRG-APP-000516
<GroupDescription></GroupDescription>Group -
The application must use encryption to implement key exchange and authenticate endpoints prior to establishing a communication channel for key exchange.
<VulnDiscussion>If the application does not use encryption and authenticate endpoints prior to establishing a communication channel and prior...Rule Medium Severity -
SRG-APP-000516
<GroupDescription></GroupDescription>Group -
The application must not contain embedded authentication data.
<VulnDiscussion>Authentication data stored in code could potentially be read and used by anonymous users to gain access to a backend database...Rule High Severity -
SRG-APP-000516
<GroupDescription></GroupDescription>Group -
The application must have the capability to mark sensitive/classified output when required.
<VulnDiscussion>Failure to properly mark output could result in a disclosure of sensitive or classified data which is an immediate loss in co...Rule High Severity
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.