SQL2-00-024600 - Domain accounts used to manage a SQL Server platform must be different from those used to manage other platforms.

Information

Separate accounts used to manage the SQL Server platform help prevent a lateral move within an environment if SQL were to be compromised.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Set up and use separate domain accounts to manage the SQL Server platform. These accounts must be different from those used to manage other platforms.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_SQL_Server_2012_V1R20_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-55935r2_rule, STIG-ID|SQL2-00-024600, Vuln-ID|V-43196

Plugin: MS_SQLDB

Control ID: c3f88df73490352adf11226ab30caf5a00236bb91f14f4065b31662936183581