Rule version KNOX-17-007500 · STIG v1 · 2026-08-07
Backups to remote systems (including cloud backup) can leave data vulnerable to breach on the external systems, which often offer less protection than the MOS. Where the remote backup involves a cloud-based solution, the backup capability is often used to synchronize data across multiple devices. In this case, DoW devices may synchronize DoW sensitive information to a user's personal device or other unauthorized computers that are vulnerable to breach. Disallowing remote backup mitigates this risk.
SFR ID: FMT_SMF_EXT.1.1 #40
Verify requirement KNOX-17-009100 (disallow modify accounts) has been implemented.
If "disallow modify accounts" has not been implemented, this is a finding.
Disallow modify accounts (refer to requirement KNOX-17-009100).