STIGhub
STIGs
RMF Controls
Compare
← IA-8 (2) — Identification and Authentication (Non-Organizational Users)
CCI-002011
Definition
The information system accepts FICAM-approved third-party credentials.
Parent Control
IA-8 (2)
Identification and Authentication (Non-Organizational Users)
Identification and Authentication
Linked STIG Checks (9)
V-279055
CAT I
ColdFusion must be using an enterprise solution for authentication.
Adobe ColdFusion Security Technical Implementation Guide
V-222559
CAT II
The application must accept Federal Identity, Credential, and Access Management (FICAM)-approved third-party credentials.
Application Security and Development Security Technical Implementation Guide
V-272627
CAT III
CylanceON-PREM must be configured to use a third-party identity provider.
Arctic Wolf CylanceON-PREM Security Technical Implementation Guide
V-256846
CAT II
Compliance Guardian must accept FICAM-approved third-party credentials.
AvePoint Compliance Guardian Security Technical Implementation Guide
V-235780
CAT II
LDAP integration in Docker Enterprise must be configured.
Docker Enterprise 2.x Linux/UNIX Security Technical Implementation Guide
V-235821
CAT II
SAML integration must be enabled in Docker Enterprise.
Docker Enterprise 2.x Linux/UNIX Security Technical Implementation Guide
V-255794
CAT III
The MQ Appliance messaging server must accept FICAM-approved third-party credentials.
IBM MQ Appliance V9.0 AS Security Technical Implementation Guide
V-255865
CAT II
The WebSphere Application Server multifactor authentication for network access to privileged accounts must be used.
IBM WebSphere Traditional V9.x Security Technical Implementation Guide
V-254093
CAT I
Innoslate must use multifactor authentication for network access to privileged and non-privileged accounts.
SPEC Innovations Innoslate 4.x Security Technical Implementation Guide