SQL2-00-009700 - All use of privileged accounts must be audited.

Information

This is intended to limit exposure, by making it possible to trace any unauthorized access to other data or functionality by a privileged user account or role that has permissions on security functions or security-relevant information.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Create a trace that meets all auditing requirements.

The script provided in the supplemental file, Trace.sql, can be used to do this; edit it as necessary to capture any additional, locally defined events.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_SQL_Server_2012_V1R20_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-53417r5_rule, STIG-ID|SQL2-00-009700, Vuln-ID|V-41042

Plugin: MS_SQLDB

Control ID: e495dc1692a84579a96f8369d72bece54a3bddada227a566da028a2826cd5473