2.4 Verify the groups within the DB2_GRP_LOOKUP environment variable are appropriate (Windows only)

Information

Periodic review of these groups is required to ensure that non-essential groups do not have unnecessary authorization.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

Alter the value of the DB2_GRP_LOOKUP environment variable so that it includes only the appropriate groups listed within the local machine/domain.

See Also

https://workbench.cisecurity.org/files/162

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6

Plugin: Windows

Control ID: 2f9e6036296e50e74e5d1bd57ca88c415e3e5e011a43809925b5a3c78856d149