-
Notifications
You must be signed in to change notification settings - Fork 86
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Update standard v1.0.0 to include "description" field
- Loading branch information
Showing
15 changed files
with
2,412 additions
and
224 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
29 changes: 29 additions & 0 deletions
29
fixtures/exports_fixtures/complete_export/standards/NIST-800-53-AC-2.md
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,3 +1,32 @@ | ||
#NIST-800-53-AC-2 | ||
##Account Management | ||
#### Description | ||
'The organization: | ||
a. Identifies and selects the following types of information system accounts | ||
to support organizational missions/business functions: [Assignment: | ||
organization-defined information system account types]; | ||
b. Assigns account managers for information system accounts; | ||
c. Establishes conditions for group and role membership; | ||
d. Specifies authorized users of the information system, group and role | ||
membership, and access authorizations (i.e., privileges) and other | ||
attributes (as required) for each account; | ||
e. Requires approvals by [Assignment: organization-defined personnel or | ||
roles] for requests to create information system accounts; | ||
f. Creates, enables, modifies, disables, and removes information system | ||
accounts in accordance with [Assignment: organization-defined procedures or | ||
conditions]; | ||
g. Monitors the use of information system accounts; | ||
h. Notifies account managers: | ||
1. When accounts are no longer required; | ||
2. When users are terminated or transferred; and | ||
3. When individual information system usage or need-to-know changes; | ||
i. Authorizes access to the information system based on: | ||
1. A valid access authorization; | ||
2. Intended system usage; and | ||
3. Other attributes as required by the organization or associated missions/business functions; | ||
j. Reviews accounts for compliance with account management requirements | ||
[Assignment: organization-defined frequency]; and | ||
k. Establishes a process for reissuing shared/group account credentials (if | ||
deployed) when individuals are removed from the group.' | ||
|
||
No information found for the combination of standard NIST-800-53 and control AC-2 |
6 changes: 6 additions & 0 deletions
6
fixtures/exports_fixtures/complete_export/standards/NIST-800-53-AC-6.md
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,3 +1,9 @@ | ||
#NIST-800-53-AC-6 | ||
##Least Privilege | ||
#### Description | ||
'The organization employs the principle of least privilege, allowing only | ||
authorized accesses for users (or processes acting on behalf of users) which | ||
are necessary to accomplish assigned tasks in accordance with organizational | ||
missions and business functions.' | ||
|
||
No information found for the combination of standard NIST-800-53 and control AC-6 |
3 changes: 3 additions & 0 deletions
3
fixtures/exports_fixtures/complete_export/standards/NIST-800-53-CM-2.md
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
1 change: 1 addition & 0 deletions
1
fixtures/exports_fixtures/complete_export/standards/PCI-DSS-MAY-2015-1.1.1.md
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,3 +1,4 @@ | ||
#PCI-DSS-MAY-2015-1.1.1 | ||
##A formal process for approving and testing all network connections and changes to the firewall and router configurations | ||
|
||
No information found for the combination of standard PCI-DSS-MAY-2015 and control 1.1.1 |
1 change: 1 addition & 0 deletions
1
...es/exports_fixtures/complete_export_with_markdown/standards/NIST-800-53-AC-2.md
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,3 +1,4 @@ | ||
#NIST-800-53-AC-2 | ||
##Account Management | ||
|
||
No information found for the combination of standard NIST-800-53 and control AC-2 |
1 change: 1 addition & 0 deletions
1
...es/exports_fixtures/complete_export_with_markdown/standards/NIST-800-53-AC-6.md
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,3 +1,4 @@ | ||
#NIST-800-53-AC-6 | ||
##Least Privilege | ||
|
||
No information found for the combination of standard NIST-800-53 and control AC-6 |
1 change: 1 addition & 0 deletions
1
...orts_fixtures/complete_export_with_markdown/standards/PCI-DSS-MAY-2015-1.1.1.md
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,3 +1,4 @@ | ||
#PCI-DSS-MAY-2015-1.1.1 | ||
##A formal process for approving and testing all network connections and changes to the firewall and router configurations | ||
|
||
No information found for the combination of standard PCI-DSS-MAY-2015 and control 1.1.1 |
Oops, something went wrong.