AC-03(12) Assert and Enforce Application Access
(a) Require applications to assert, as part of the installation process, the access needed to the following system applications and functions: ac-03.12_odp;
(b) Provide an enforcement mechanism to prevent unauthorized access; and
(c) Approve access changes after initial installation of the application.
Parameter ID | Definition |
---|---|
ac-03.12_odp | system applications and functions |
Baselines
- L
- M
- H
- P
Guidance
Asserting and enforcing application access is intended to address applications that need to access existing system applications and functions, including user contacts, global positioning systems, cameras, keyboards, microphones, networks, phones, or other files.
Related controls 1
- CM-07 Least Functionality L M H P