STIGhubSTIGhub
STIGhub— A free STIG search and compliance tool·STIGs updated 14 hours ago
Powered by Pylon·Privacy·Terms·Feedback·© 2026 Beacon Cloud Solutions, Inc.
← AC-3 (13) — Access Enforcement

CCI-003650

Definition

Enforce attribute-based access control policy over defined subjects and objects based upon organization-defined attributes to assume access permissions.

Parent Control

AC-3 (13)Access EnforcementAccess Control

Linked STIG Checks (4)

V-284007CAT IIFly Server must enforce a role-based access control (RBAC) policy over defined subjects and objects.AvePoint Fly Server Security Technical Implementation GuideV-288273CAT IIThe application must enforce attribute-based access control policy over defined subjects and objects based upon organization-defined attributes to assume access permissions.General Application (GAPP) Security Requirements GuideV-278976CAT IIThe operating system must enforce attribute-based access control policy over defined subjects and objects based upon organization-defined attributes to assume access permissions.General Purpose Operating System Security Requirements GuideV-279015CAT IIThe VMM must enforce attribute-based access control policy over defined subjects and objects based upon organization-defined attributes to assume access permissions.Virtual Machine Manager Security Requirements Guide