STIGhub
STIGs
RMF Controls
Compare
← All Controls
CM-2 (4)
Configuration Management
Rev 5
Withdrawn
Unauthorized Software
This control has been withdrawn and incorporated into:
CM-7 (4)
CCI Identifiers (3)
CCI-000305
The organization develops a list of software programs not authorized to execute on the information system.
CCI-000306
The organization maintains the list of software programs not authorized to execute on the information system.
CCI-000307
The organization employs an allow-all, deny-by-exception authorization policy to identify software allowed to execute on the information system.
Linked STIG Checks (7)
Across 1 STIGs. Click to expand.
▶
SUSE Linux Enterprise Server v11 for System z Security Technical Implementation Guide
7 checks