V-254917
Tanium 7.x Application on TanOS Security Technical Implementation Guide
Title
The Tanium application must separate user functionality (including user interface services) from information system management functionality.
Description
<VulnDiscussion>Application management functionality includes functions necessary for administration and requires privileged user access. Allowing nonprivileged users to access application management functionality capabilities increases the risk that nonprivileged users may obtain elevated privileges. The separation of user functionality from information system management functionality is either physical or logical and is accomplished by using different computers, different central processing ...
Fix Text (Documentation Requirement)
Prepare and maintain documentation identifying the Tanium console users and their respective User Groups, Roles, Computer Groups, and associated LDAP security groups.