Skip to content

The UEM server must prohibit the use of cached authenticators after an organization-defined time period.

An XCCDF Rule

Description

If cached authentication information is out-of-date, the validity of the authentication information may be questionable. According to the CNSS 1253, the IA-5(13) control which is tied to this requirement is not defined at the DoD-level. The organization should specify this value based on numerous factors, including the application in question, the data it hosts and the associated exposures/risks.

ID
SV-234543r961521_rule
Version
SRG-APP-000400-UEM-000271
Severity
Medium
References
Updated

Remediation Templates

A Manual Procedure

Configure the UEM server to prohibit the use of cached authenticators after an organization-defined time period.