CCI|CCI-000795

Title

The organization manages information system identifiers by disabling the identifier after an organization-defined time period of inactivity.

Reference Item Details

Category: 2024

Audit Items

View all Reference Audit Items

NamePluginAudit Name
1.6 VCSA-80-000059VMwareCIS VMware vSphere 8.0 vCenter STIG v1.0.0 CAT II
1.15 WN10-00-000065WindowsCIS Microsoft Windows 10 STIG v1.0.0 CAT III
1.19 WN16-00-000210WindowsCIS Microsoft Windows Server 2016 STIG v4.0.0 MS CAT II
1.19 WN16-00-000210WindowsCIS Microsoft Windows Server 2016 STIG v4.0.0 DC CAT II
1.19 WN19-00-000190WindowsCIS Microsoft Windows Server 2019 STIG v4.0.0 DC CAT II
1.19 WN19-00-000190WindowsCIS Microsoft Windows Server 2019 STIG v4.0.0 MS CAT II
1.19 WN22-00-000190WindowsCIS Microsoft Windows Server 2022 STIG v3.0.0 DC CAT II
1.19 WN22-00-000190WindowsCIS Microsoft Windows Server 2022 STIG v3.0.0 MS CAT II
1.40 UBTU-24-200260UnixCIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT II
1.73 SLES-15-020050UnixCIS SUSE Linux Enterprise Server 15 STIG v1.0.0 CAT II
1.78 UBTU-22-411035UnixCIS Ubuntu Linux 22.04 LTS STIG v1.0.0 CAT II
1.95 SOL-11.1-040280UnixCIS Solaris 11 X86 STIG v1.0.0 CAT II
1.95 SOL-11.1-040280UnixCIS Solaris 11 SPARC STIG v1.0.0 CAT II
1.131 APPL-14-003080UnixCIS Apple macOS 14 Sonoma STIG v1.0.0 CAT II
1.186 OL08-00-020260UnixCIS Oracle Linux 8 STIG v1.0.0 CAT II
1.187 OL08-00-020261UnixCIS Oracle Linux 8 STIG v1.0.0 CAT II
1.274 RHEL-09-411050UnixCIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II
4.019 - Outdated or unused accounts must be removed from the system.WindowsDISA Windows Vista STIG v6r41
5.5.1.9 Ensure inactive password lock is 0 days - individuals, groups, roles, and devices if the password expires.UnixCIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
ALMA-09-035660 - AlmaLinux OS 9 must disable account identifiers (individuals, groups, roles, and devices) after 35 days of inactivity.UnixDISA Cloud Linux AlmaLinux OS 9 STIG v1r6
APPL-14-003080 - The macOS system must disable accounts after 35 days of inactivity.UnixDISA Apple macOS 14 Sonoma STIG v2r4
Big Sur - Disable Accounts after 35 Days of InactivityUnixNIST macOS Big Sur v1.4.0 - 800-53r4 Low
Big Sur - Disable Accounts after 35 Days of InactivityUnixNIST macOS Big Sur v1.4.0 - 800-53r5 Moderate
Big Sur - Disable Accounts after 35 Days of InactivityUnixNIST macOS Big Sur v1.4.0 - All Profiles
Big Sur - Disable Accounts after 35 Days of InactivityUnixNIST macOS Big Sur v1.4.0 - 800-53r4 Moderate
Big Sur - Disable Accounts after 35 Days of InactivityUnixNIST macOS Big Sur v1.4.0 - 800-171
Big Sur - Disable Accounts after 35 Days of InactivityUnixNIST macOS Big Sur v1.4.0 - CNSSI 1253
Big Sur - Disable Accounts after 35 Days of InactivityUnixNIST macOS Big Sur v1.4.0 - 800-53r5 High
Big Sur - Disable Accounts after 35 Days of InactivityUnixNIST macOS Big Sur v1.4.0 - 800-53r4 High
Catalina - Disable Accounts after 35 Days of InactivityUnixNIST macOS Catalina v1.5.0 - 800-53r4 Low
Catalina - Disable Accounts after 35 Days of InactivityUnixNIST macOS Catalina v1.5.0 - CNSSI 1253
Catalina - Disable Accounts after 35 Days of InactivityUnixNIST macOS Catalina v1.5.0 - 800-53r4 High
Catalina - Disable Accounts after 35 Days of InactivityUnixNIST macOS Catalina v1.5.0 - 800-53r4 Moderate
Catalina - Disable Accounts after 35 Days of InactivityUnixNIST macOS Catalina v1.5.0 - 800-53r5 High
Catalina - Disable Accounts after 35 Days of InactivityUnixNIST macOS Catalina v1.5.0 - All Profiles
Catalina - Disable Accounts after 35 Days of InactivityUnixNIST macOS Catalina v1.5.0 - 800-171
Catalina - Disable Accounts after 35 Days of InactivityUnixNIST macOS Catalina v1.5.0 - 800-53r5 Moderate
GEN000760 - Accounts must be locked upon 35 days of inactivity.UnixDISA STIG for Oracle Linux 5 v2r1
GEN006660 - Accounts must be locked upon 35 days of inactivity.UnixDISA STIG for Oracle Linux 5 v2r1
JBOS-AS-000290 - JBoss management Interfaces must be integrated with a centralized authentication mechanism that is configured to manage accounts according to DoD policy.UnixDISA JBoss Enterprise Application Platform 6.3 STIG v2r6
Monterey - Disable Accounts after 35 Days of InactivityUnixNIST macOS Monterey v1.0.0 - 800-53r4 Low
Monterey - Disable Accounts after 35 Days of InactivityUnixNIST macOS Monterey v1.0.0 - 800-53r4 High
Monterey - Disable Accounts after 35 Days of InactivityUnixNIST macOS Monterey v1.0.0 - 800-53r5 High
Monterey - Disable Accounts after 35 Days of InactivityUnixNIST macOS Monterey v1.0.0 - CNSSI 1253
Monterey - Disable Accounts after 35 Days of InactivityUnixNIST macOS Monterey v1.0.0 - 800-171
Monterey - Disable Accounts after 35 Days of InactivityUnixNIST macOS Monterey v1.0.0 - 800-53r5 Moderate
Monterey - Disable Accounts after 35 Days of InactivityUnixNIST macOS Monterey v1.0.0 - 800-53r4 Moderate
Monterey - Disable Accounts after 35 Days of InactivityUnixNIST macOS Monterey v1.0.0 - All Profiles
OL07-00-010310 - The Oracle Linux operating system must disable account identifiers (individuals, groups, roles, and devices) if the password expires - individuals, groups, roles, and devices if the password expires.UnixDISA Oracle Linux 7 STIG v3r5
OL08-00-020260 - The OL 8 system-auth file must disable access to the system for account identifiers (individuals, groups, roles, and devices) with 35 days of inactivity.UnixDISA Oracle Linux 8 STIG v2r8