Rule ID
SV-7027r1_rule
Version
V2R15
CCIs
Without appropriate discretionary access controls unauthorized individuals may read the scanned data. This can lead to a compromise of sensitive data.<br />The SA will ensure file shares have the appropriate discretionary access control list in place if scan to a file share is enabled.
The reviewer will, with the assistance of the SA, verify that file shares have the appropriate discretionary access control list in place if scan to a file share is enabled.
Create the appropriate discretionary access control list for file shares if scan to a file share is enabled.