|
control enhancementSI-3(8)
Detect Unauthorized Commands (SI-3(8))
Detect the following unauthorized operating system commands through the kernel application programming interface on [organization-defined]: [organization-defined] ; and [organization-defined].
integritymalwareflaw-remediationmonitoringenhancement
Why These Connect
Enhances1
These enhancements add specific capabilities or refinements to the base control.
Organization-Defined Parameters(3)
Assignmentorganization-defined unauthorized operating system commands
Assignmentorganization-defined system hardware components
SelectionSelection (one-or-more): issue a warning / audit the command execution / prevent the execution of the command