Skip to main content

πŸ’Ό CC6.1-8 Manages Identification and Authentication

Description​

Identification and authentication requirements are established, documented, and managed for individuals and systems accessing entity information, infrastructure and software.

Similar​

  • Internal
    • ID: dec-c-a6bb4b85

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags

Policies (21)​

PolicyLogic CountFlags
πŸ“ AWS Account IAM Access Analyzer is not enabled for all regions 🟒1🟒 x6
πŸ“ AWS Account IAM Password Policy Number of passwords to remember is not set to 24 🟒1🟒 x6
πŸ“ AWS Account Root User credentials were used is the last 30 days πŸ”΄πŸŸ’1πŸ”΄ x1, 🟒 x6
πŸ“ AWS CloudTrail S3 Bucket Access Logging is not enabled. 🟒1🟒 x6
πŸ“ AWS IAM Policy allows full administrative privileges 🟒1🟒 x6
πŸ“ AWS IAM User Access Keys are not rotated every 90 days or less 🟒1🟒 x6
πŸ“ AWS IAM User has more than one active access key 🟒1🟒 x6
πŸ“ AWS IAM User with console and programmatic access set during the initial creation 🟒🟒 x3
πŸ“ AWS S3 Bucket MFA Delete is not enabled 🟠🟒1🟠 x1, 🟒 x6
πŸ“ AWS S3 Bucket Policy is not set to deny HTTP requests 🟒1🟒 x6
πŸ“ AWS S3 Bucket Server Access Logging is not enabled 🟒1🟒 x6
πŸ“ AWS S3 Bucket Versioning is not enabled 🟒1🟒 x6
πŸ“ Azure App Service Authentication is disabled and Basic Authentication is enabled 🟒1🟒 x6
πŸ“ Azure App Service Basic Authentication is enabled 🟒🟒 x3
πŸ“ Azure App Service is not registered with Microsoft Entra ID 🟒1🟒 x6
πŸ“ Azure Cosmos DB Account Private Endpoints are not used 🟒1🟒 x6
πŸ“ Azure Cosmos DB Entra ID Client Authentication is not used 🟒🟒 x3
πŸ“ Azure PostgreSQL Flexible Server Firewall Rules allow access to Azure services 🟒1🟒 x6
πŸ“ Azure SQL Database allows ingress from 0.0.0.0/0 (ANY IP) 🟒1🟒 x6
πŸ“ Azure Storage Account Trusted Azure Services are not enabled as networking exceptions 🟒1🟒 x6
πŸ“ Azure Storage Blob Containers Soft Delete is not enabled 🟒1🟒 x6

Internal Rules​

RulePoliciesFlags
βœ‰οΈ dec-x-1fc681bc1
βœ‰οΈ dec-x-2a9e52551
βœ‰οΈ dec-x-157aa4b91
βœ‰οΈ dec-x-0289e9c91
βœ‰οΈ dec-x-3179d53c1
βœ‰οΈ dec-x-307950161
βœ‰οΈ dec-x-a8281d051
βœ‰οΈ dec-x-ab7fc52e1
βœ‰οΈ dec-x-b4d3d9dc2
βœ‰οΈ dec-x-b10e98af1
βœ‰οΈ dec-x-bcb0c78f1
βœ‰οΈ dec-x-bf1f13f61
βœ‰οΈ dec-x-ca52f63a2
βœ‰οΈ dec-x-d5fbfc401
βœ‰οΈ dec-x-e58fd8e01
βœ‰οΈ dec-x-e00143332
βœ‰οΈ dec-x-f7c2faac1
βœ‰οΈ dec-z-bb7312921