STIGhub
STIGs
RMF Controls
Compare
← IA-8 (4) — Identification and Authentication (Non-Organizational Users)
CCI-002014
Definition
The information system conforms to FICAM-issued profiles.
Parent Control
IA-8 (4)
Identification and Authentication (Non-Organizational Users)
Identification and Authentication
Linked STIG Checks (16)
V-279055
CAT I
ColdFusion must be using an enterprise solution for authentication.
Adobe ColdFusion Security Technical Implementation Guide
V-222560
CAT II
The application must conform to Federal Identity, Credential, and Access Management (FICAM)-issued profiles.
Application Security and Development Security Technical Implementation Guide
V-272627
CAT III
CylanceON-PREM must be configured to use a third-party identity provider.
Arctic Wolf CylanceON-PREM Security Technical Implementation Guide
V-256847
CAT II
Compliance Guardian must conform to FICAM-issued profiles.
AvePoint Compliance Guardian Security Technical Implementation Guide
V-237397
CAT II
The CA API Gateway providing user authentication intermediary services must conform to Federal Identity, Credential, and Access Management (FICAM) issued profiles.
CA API Gateway ALG Security Technical Implementation Guide
V-235780
CAT II
LDAP integration in Docker Enterprise must be configured.
Docker Enterprise 2.x Linux/UNIX Security Technical Implementation Guide
V-235821
CAT II
SAML integration must be enabled in Docker Enterprise.
Docker Enterprise 2.x Linux/UNIX Security Technical Implementation Guide
V-215735
CAT II
The BIG-IP APM module must conform to FICAM-issued profiles.
F5 BIG-IP Access Policy Manager Security Technical Implementation Guide
V-215788
CAT II
The BIG-IP Core implementation must be able to conform to FICAM-issued profiles when providing authentication to virtual servers.
F5 BIG-IP Local Traffic Manager Security Technical Implementation Guide
V-252558
CAT II
IBM Aspera Console must implement multifactor authentication for remote access to non-privileged accounts such that one of the factors is provided by a device separate from the system gaining access.
IBM Aspera Platform 4.2 Security Technical Implementation Guide
V-252580
CAT II
IBM Aspera Faspex must implement multifactor authentication for remote access to non-privileged accounts such that one of the factors is provided by a device separate from the system gaining access.
IBM Aspera Platform 4.2 Security Technical Implementation Guide
V-252599
CAT II
IBM Aspera Shares must implement multifactor authentication for remote access to non-privileged accounts such that one of the factors is provided by a device separate from the system gaining access.
IBM Aspera Platform 4.2 Security Technical Implementation Guide
V-65267
CAT II
The DataPower Gateway providing user authentication intermediary services must conform to FICAM-issued profiles.
IBM DataPower ALG Security Technical Implementation Guide
V-255794
CAT III
The MQ Appliance messaging server must accept FICAM-approved third-party credentials.
IBM MQ Appliance V9.0 AS Security Technical Implementation Guide
V-254093
CAT I
Innoslate must use multifactor authentication for network access to privileged and non-privileged accounts.
SPEC Innovations Innoslate 4.x Security Technical Implementation Guide
V-94299
CAT II
Symantec ProxySG providing user authentication intermediary services must conform to Federal Identity, Credential, and Access Management (FICAM)-issued profiles.
Symantec ProxySG ALG Security Technical Implementation Guide