The UEM server must prohibit the use of cached authenticators after an organization-defined time period.
An XCCDF Rule
Description
If cached authentication information is out-of-date, the validity of the authentication information may be questionable. According to the CNSS 1253, the IA-5(13) control which is tied to this requirement is not defined at the DoD-level. The organization should specify this value based on numerous factors, including the application in question, the data it hosts and the associated exposures/risks.
- ID
- SV-234543r961521_rule
- Version
- SRG-APP-000400-UEM-000271
- Severity
- Medium
- References
- Updated
Remediation Templates
A Manual Procedure
Configure the UEM server to prohibit the use of cached authenticators after an organization-defined time period.