Jamf Pro v10.x EMM Security Technical Implementation Guide
Rules, Groups, and Values defined within the XCCDF Benchmark
-
PP-MDM-991000
<GroupDescription></GroupDescription>Group -
The default mysql_secure_installation must be installed.
<VulnDiscussion>The mysql_secure_installation configuration of MySQL adds several important configuration settings that block several attack ...Rule Medium Severity -
PP-MDM-991000
<GroupDescription></GroupDescription>Group -
A unique database name and a unique MySQL user with a secure password must be created for use in Jamf Pro EMM.
<VulnDiscussion>If the default MySQL database name and password are not changed an adversary could gain unauthorized access to the applicatio...Rule Medium Severity -
PP-MDM-991000
<GroupDescription></GroupDescription>Group -
Separate MySQL user accounts with limited privileges must be created within Jamf Pro EMM.
<VulnDiscussion>If separate MySQL accounts with limited privileges are not created an adversary could gain unauthorized access to the applica...Rule Medium Severity -
PP-MDM-991000
<GroupDescription></GroupDescription>Group -
MySQL database backups must be scheduled in Jamf Pro EMM.
<VulnDiscussion>Database backups are a recognized best practice to protect against key data loss and possible adverse impacts to the mission ...Rule Medium Severity -
PP-MDM-991000
<GroupDescription></GroupDescription>Group -
PP-MDM-431005
<GroupDescription></GroupDescription>Group -
The Jamf Pro EMM local accounts password must be configured with length of 15 characters.
<VulnDiscussion>The shorter the password, the lower the number of possible combinations that need to be tested before the password is comprom...Rule Medium Severity -
PP-MDM-991000
<GroupDescription></GroupDescription>Group -
The Jamf Pro EMM local accounts must be configured with at least one lowercase character.
<VulnDiscussion>Use of a complex password helps to increase the time and resources required to compromise the password. Password complexity, ...Rule Medium Severity -
PP-MDM-991000
<GroupDescription></GroupDescription>Group -
The Jamf Pro EMM local accounts must be configured with at least one uppercase character.
<VulnDiscussion>Use of a complex password helps to increase the time and resources required to compromise the password. Password complexity, ...Rule Medium Severity -
PP-MDM-991000
<GroupDescription></GroupDescription>Group -
The Jamf Pro EMM local accounts must be configured with at least one number.
<VulnDiscussion>Use of a complex password helps to increase the time and resources required to compromise the password. Password complexity, ...Rule Medium Severity -
PP-MDM-991000
<GroupDescription></GroupDescription>Group -
The Jamf Pro EMM local accounts must be configured with at least one special character.
<VulnDiscussion>Use of a complex password helps to increase the time and resources required to compromise the password. Password complexity, ...Rule Medium Severity -
PP-MDM-991000
<GroupDescription></GroupDescription>Group
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.