Access to need-to-know information must be restricted to an authorized community of interest.
Overview
Finding ID
Version
Rule ID
IA Controls
Severity
V-243481
AD.0170
SV-243481r959010_rule
Medium
Description
Because trust relationships effectively eliminate a level of authentication in the trusting domain or forest, they represent less stringent access control at the domain or forest level in which the resource resides. To mitigate this risk, trust relationships must be documented so that they can be readily verified during periodic inspections designed to validate only approved trusts are configured in AD.