2.4 Verify the groups within the DB2_GRP_LOOKUP environment variable are appropriate (Windows only)

Information

Periodic review of these groups is required to ensure that non-essential groups do not have unnecessary authorization.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

Alter the value of the DB2_GRP_LOOKUP environment variable so that it includes only the appropriate groups listed within the local machine/domain.

See Also

https://workbench.cisecurity.org/files/162

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-6

Plugin: Windows

Control ID: 9040995ce5877e1bfe98506681de2d3fca990e27707b2aed710319b5d96d6782