Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

What is meant by logical controls?

5.18.5. Unattended computing devices must be secured from unauthorized access. Physical security options include barriers such as locked doors or security cables. Logical security options include screen saver passwords and automatic session time-outs.

which would apply to both systems (5.18.5) and to physical access of the room itself via authentication mechanism (e.g. BACs).  Whatever system is in place would probably have to comply with permissions, logging/auditingAccording to the Information Security Office (ISO), logical security controls would consist of implementing permissions, logging, and auditing mechanisms for access to unattended systems.  For example, physical access of the "server room" should have an Access Control System in place to track who has access to a particular area, and logs when an individual has entered the controlled area.