STIGhubSTIGhub
STIGsRMF ControlsCompare

STIGhub

A free tool to search and browse the entire DISA STIG library. Saves up to 75% in security compliance research time.

Navigation

  • Browse STIGs
  • Search
  • RMF Controls
  • Compare Versions

Resources

  • About
  • Release Notes
  • VPAT
  • DISA STIG Library
STIGs updated 3 hours ago
Powered by Pylon
© 2026 Beacon Cloud Solutions, Inc. All rights reserved.
← All Controls

AC-3 (7)

Access ControlRev 5

Access Enforcement

CCI Identifiers (11)

CCI-002166Defines the role-based access control policies to enforce over all subjects and objects.CCI-002167The organization defines the subjects over which the information system will enforce a role-based access control policy.CCI-002168The organization defines the objects over which the information system will enforce a role-based access control policy.CCI-002169Enforce a role-based access control policy over defined subjects and objects based upon organization-defined roles and users authorized to assume such roles.CCI-002170Control access based upon organization-defined roles and users authorized to assume such roles.CCI-002171The information system enforces a role-based access control policy over organization-defined subjects.deprecatedCCI-002172The information system enforces a role-based access control policy over organization-defined objects.deprecatedCCI-002173Defines the roles authorized to control access based upon the role-based access control policy.CCI-002174Defines the users authorized to control access based upon the role-based access control policy.CCI-002175The information system controls access based upon organization-defined roles authorized to assume such roles, employing the organization-defined role-based access control policy.deprecatedCCI-002176The information system controls access based upon organization-defined users authorized to assume such roles, employing the organization-defined role-based access control policy.deprecated

Linked STIG Checks (24)

Across 24 STIGs. Click to expand.