AC-03(10) Audited Override of Access Control Mechanisms
Employ an audited override of automated access control mechanisms under ac-03.10_odp.01 by ac-03.10_odp.02.
Parameter ID | Definition |
---|---|
ac-03.10_odp.01 | conditions |
ac-03.10_odp.02 | roles |
Baselines
- L
- M
- H
- P
Guidance
In certain situations, such as when there is a threat to human life or an event that threatens the organization’s ability to carry out critical missions or business functions, an override capability for access control mechanisms may be needed. Override conditions are defined by organizations and used only in those limited circumstances. Audit events are defined in AU-2 . Audit records are generated in AU-12.
Related controls 5
- AU-02 Event Logging L M H P
- AU-06 Audit Record Review, Analysis, and Reporting L M H P
- AU-10 Non-repudiation L M H P
- AU-12 Audit Record Generation L M H P
- AU-14 Session Audit L M H P