SRG-APP-000033 Controls

STIG IDVersionTitleProduct
SRG-APP-000033-API-000070V1R1The API must be configured to use approved authorizations for access control.Security Requirements Guide - API
SRG-APP-000033-CTR-000090V2R4Least privilege access and need-to-know must be required to access the container platform registry.Security Requirements Guide - Container Platform
SRG-APP-000033-CTR-000095V2R4Least privilege access and need-to-know must be required to access the container platform runtime.Security Requirements Guide - Container Platform
SRG-APP-000033-CTR-000100V2R4Least privilege access and need-to-know must be required to access the container platform keystore.Security Requirements Guide - Container Platform
SRG-APP-000033-DNS-000042V4R2The DNS server implementation must provide the means for authorized individuals to determine the identity of the source of the DNS server-provided information.Security Requirements Guide - Domain Name Service
SRG-APP-000033-MFP-000056V3R4The Mainframe Product must enforce approved authorizations for logical access to sensitive information and system resources in accordance with applicable access control policies.Security Requirements Guide - Mainframe Product
SRG-APP-000033-MFP-000057V3R4The Mainframe Product must enforce approved authorizations for security administrator access to sensitive information and system resources in accordance with applicable access control policies.Security Requirements Guide - Mainframe Product
SRG-APP-000033-MFP-000066V3R4The Mainframe Product must enforce approved authorizations for system programmer access to sensitive information and system resources in accordance with applicable access control policies.Security Requirements Guide - Mainframe Product
SRG-APP-000033-WSR-000169V4R4The web server must enforce approved authorizations for logical access to hosted applications and resources in accordance with applicable access control policies.Security Requirements Guide - Web Server