The VMM must map the authenticated identity to the user or group account for PKI-based authentication.
Severity | Group ID | Group Title | Version | Rule ID | Date | STIG Version |
|---|---|---|---|---|---|---|
| medium | V-207371 | SRG-OS-000068 | SRG-OS-000068-VMM-000350 | SV-207371r958452_rule | 2025-09-10 | 2 |
Description
Without mapping the certificate used to authenticate to the user account, the ability to determine the identity of the individual user or group will not be available for forensic analysis.
ℹ️ Check
Verify the VMM maps the authenticated identity to the user or group account for PKI-based authentication.
If it does not, this is a finding.
✔️ Fix
Configure the VMM to map the authenticated identity to the user or group account for PKI-based authentication.