IA-05.7 ยท No Embedded Unencrypted Static Authenticators

Control Description

Ensure that unencrypted static authenticators are not embedded in applications or other forms of static storage.

Impact Baselines
Security baselines where this control applies
Not in any baseline
Control Properties
SP800-53-enhancement
organization
Enhancement
Control Statement
The control requirements

Ensure that unencrypted static authenticators are not embedded in applications or other forms of static storage.

Supplemental Guidance

In addition to applications, other forms of static storage include access scripts and function keys. Organizations exercise caution when determining whether embedded or stored authenticators are in encrypted or unencrypted form. If authenticators are used in the manner stored, then those representations are considered unencrypted authenticators.