unified
UC-ACCESS-13 — Notify users of system terms and previous logon activity
An approved system-use notification is displayed before logon, stating monitoring, usage terms, and privacy expectations, and requiring acknowledgment where mandated. Upon successful logon, the system displays the date and time of the user's last logon, and failed attempts where supported, so users can detect unauthorized use of their accounts.
Record JSON · Open in map · Data retrieval guide
Catalog revision: 24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028. A connection does not establish full coverage.
Attributes
- domain
- Access Control & Identity Management
- type
- preventive
- category
- technical
Details
- unified_id
- UC-ACCESS-13
- title
- Notify users of system terms and previous logon activity
- statement
- An approved system-use notification is displayed before logon, stating monitoring, usage terms, and privacy expectations, and requiring acknowledgment where mandated. Upon successful logon, the system displays the date and time of the user's last logon, and failed attempts where supported, so users can detect unauthorized use of their accounts.
- domain
- Access Control & Identity Management
- control_type
- preventive
- control_category
- technical
- members
- framework
- nist-800-53
- control_id
- AC-8
- coverage
- full
- relationship
- superset_of
- framework
- nist-800-53
- control_id
- AC-9
- coverage
- full
- relationship
- superset_of
- guidance
Source
No record-specific source URL is provided.
Connections
- Authentication Platform & Session Policy Operations operates UC-ACCESS-13 — Notify users of system terms and previous logon activity
- UC-ACCESS-13 — Notify users of system terms and previous logon activity maps_to AC-8 — System Use Notification
- framework
- nist-800-53
- control_id
- AC-8
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- Rev. 5
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- Security Control Assessment & POA&M Remediation tests UC-ACCESS-13 — Notify users of system terms and previous logon activity
- UC-ACCESS-13 — Notify users of system terms and previous logon activity mitigates Unauthorized use of equipment and unauthorized access escalation
- strength
- related
- rationale
- Last-logon and failed-attempt display is a soft detective aid: it helps users notice unauthorized account use after the fact but depends on user vigilance and does not itself prevent or reduce unauthorized use.
- UC-ACCESS-13 — Notify users of system terms and previous logon activity maps_to AC-9 — Previous Logon Notification
- framework
- nist-800-53
- control_id
- AC-9
- coverage
- full
- relationship
- superset_of
- delta
- Not provided
- source_version
- Rev. 5
- provenance
- mapper
- coworkcanvas-compliance-graph
- reviewDate
- 2026-09-07
- direction
- canonical_to_source
- defaultConfidence
- medium
- defaultStatus
- active
- note
- Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.
- UC-ACCESS-13 — Notify users of system terms and previous logon activity mitigates External fraud — third-party theft, forgery, payment and account fraud
- strength
- related
- rationale
- Last-logon notification helps users spot stolen-credential account takeover early.