CCI|CCI-001084

Title

The information system isolates security functions from nonsecurity functions.

Reference Item Details

Category: 2009

Audit Items

View all Reference Audit Items

NamePluginAudit Name
3.130 - User Account Control - Behavior of elevation prompt for administratorsWindowsDISA Windows Vista STIG v6r41
3.130 - User Account Control is configured for the appropriate elevation prompt for administratorsWindowsDISA Windows 7 STIG v1r32
3.130 - User Account Control must, at minimum, prompt administrators for consent.WindowsDISA Windows Server 2008 DC STIG v6r47
3.130 - User Account Control must, at minimum, prompt administrators for consent.WindowsDISA Windows Server 2008 MS STIG v6r46
3.130 - User Account Control will, at a minimum, prompt administrators for consent.WindowsDISA Windows Server 2008 R2 MS STIG v1r33
3.130 - User Account Control will, at a minimum, prompt administrators for consent.WindowsDISA Windows Server 2008 R2 DC STIG v1r34
3.132 - User Account Control - Detect Application InstallationsWindowsDISA Windows Server 2008 DC STIG v6r47
3.132 - User Account Control - Detect Application InstallationsWindowsDISA Windows Server 2008 MS STIG v6r46
3.132 - User Account Control - Detect Application InstallationsWindowsDISA Windows Vista STIG v6r41
3.132 - User Account Control is configured to detect application installations.WindowsDISA Windows 7 STIG v1r32
3.132 - User Account Control will be configured to detect application installations and prompt for elevation.WindowsDISA Windows Server 2008 R2 DC STIG v1r34
3.132 - User Account Control will be configured to detect application installations and prompt for elevation.WindowsDISA Windows Server 2008 R2 MS STIG v1r33
3.134 - User Account Control - Elevate UIAccess applications that are in secure locationsWindowsDISA Windows Vista STIG v6r41
3.134 - User Account Control - Elevate UIAccess applications that are in secure locationsWindowsDISA Windows Server 2008 DC STIG v6r47
3.134 - User Account Control - Elevate UIAccess applications that are in secure locationsWindowsDISA Windows Server 2008 MS STIG v6r46
3.134 - User Account Control - Elevate UIAccess applications that are in secure locations.WindowsDISA Windows 7 STIG v1r32
3.134 - User Account Control will only elevate UIAccess applications that are installed in secure locationsWindowsDISA Windows Server 2008 R2 MS STIG v1r33
3.134 - User Account Control will only elevate UIAccess applications that are installed in secure locationsWindowsDISA Windows Server 2008 R2 DC STIG v1r34
3.135 - User Account Control - Switch to secure desktopWindowsDISA Windows Vista STIG v6r41
3.135 - User Account Control - Switch to secure desktopWindowsDISA Windows Server 2008 MS STIG v6r46
3.135 - User Account Control - Switch to secure desktopWindowsDISA Windows Server 2008 DC STIG v6r47
3.135 - User Account Control - Switch to secure desktop.WindowsDISA Windows 7 STIG v1r32
3.135 - User Account Control will switch to the secure desktop when prompting for elevation.WindowsDISA Windows Server 2008 R2 MS STIG v1r33
3.135 - User Account Control will switch to the secure desktop when prompting for elevation.WindowsDISA Windows Server 2008 R2 DC STIG v1r34
3.136 - User Account Control - Non UAC Compliant Application VirtualizationWindowsDISA Windows Server 2008 MS STIG v6r46
3.136 - User Account Control - Non UAC Compliant Application VirtualizationWindowsDISA Windows Vista STIG v6r41
3.136 - User Account Control - Non UAC Compliant Application VirtualizationWindowsDISA Windows Server 2008 DC STIG v6r47
3.136 - User Account Control - Non UAC compliant applications run in virtualized file and registry entries.WindowsDISA Windows 7 STIG v1r32
3.136 - User Account Control will virtualize file and registry write failures to per-user locations.WindowsDISA Windows Server 2008 R2 DC STIG v1r34
3.136 - User Account Control will virtualize file and registry write failures to per-user locations.WindowsDISA Windows Server 2008 R2 MS STIG v1r33
3.138 - UAC - Allow UIAccess applications to prompt for elevation without using the secure desktopWindowsDISA Windows Server 2008 MS STIG v6r46
3.138 - UAC - Allow UIAccess applications to prompt for elevation without using the secure desktopWindowsDISA Windows Server 2008 DC STIG v6r47
3.138 - UIAccess applications will not be allowed to prompt for elevation without using the secure desktop.WindowsDISA Windows Server 2008 R2 DC STIG v1r34
3.138 - UIAccess applications will not be allowed to prompt for elevation without using the secure desktop.WindowsDISA Windows Server 2008 R2 MS STIG v1r33
3.140 - UAC - All application are elevated.WindowsDISA Windows 7 STIG v1r32
3.140 - UAC - Application ElevationsWindowsDISA Windows Server 2008 DC STIG v6r47
3.140 - UAC - Application ElevationsWindowsDISA Windows Server 2008 MS STIG v6r46
3.140 - Windows will elevate all applications in User Account Control, not just signed ones.WindowsDISA Windows Server 2008 R2 DC STIG v1r34
3.140 - Windows will elevate all applications in User Account Control, not just signed ones.WindowsDISA Windows Server 2008 R2 MS STIG v1r33
3.141 - User Account Control - Executable ElevationWindowsDISA Windows Vista STIG v6r41
5.132 - Administrator accounts must not be enumerated during elevation.WindowsDISA Windows Server 2008 R2 DC STIG v1r34
5.132 - Administrator accounts must not be enumerated during elevation.WindowsDISA Windows Server 2008 DC STIG v6r47
5.132 - Administrator accounts must not be enumerated during elevation.WindowsDISA Windows Server 2008 MS STIG v6r46
5.132 - Administrator accounts must not be enumerated during elevation.WindowsDISA Windows Server 2008 R2 MS STIG v1r33
5.132 - Require username and password to elevate a running application.WindowsDISA Windows Vista STIG v6r41
5.132 - Require username and password to elevate a running application.WindowsDISA Windows 7 STIG v1r32
5.270 - Domain users will be required to elevate when setting a network's location.WindowsDISA Windows Server 2008 R2 MS STIG v1r33
5.270 - Domain users will be required to elevate when setting a network's location.WindowsDISA Windows Server 2008 R2 DC STIG v1r34
5.270 - Require domain users to elevate when setting a network's location.WindowsDISA Windows 7 STIG v1r32
AS24-U2-000580 - The Apache web server document directory must be in a separate partition from the Apache web servers system files.UnixDISA STIG Apache Server 2.4 Unix Site v2r2 Middleware