Skip to content

The Samsung SDS EMM must implement functionality to generate an audit record of the following auditable events: c. [selection: Commands issued to the MDM Agent].

An XCCDF Rule

Description

Audit logs enable monitoring of security-relevant events and subsequent forensics when breaches occur. For audit logs to be useful, administrators must have the ability to view them. SFR ID: FAU_GEN.1.1(1)

ID
SV-225640r588007_rule
Version
SSDS-00-000010
Severity
Low
References
Updated

Remediation Templates

A Manual Procedure

Use the following instructions to configure logging of all commands issued to the MDM Agent on the SDS EMM server:    

On the MDM console, do the following:
1. Log in to the Admin Console using a web browser.
2. Go to Service Overview >> Log and Event >> Audit Event. 
3. Select Type as "Server" and Event Category as "Device Command". 
4. Check the audit target and click the "Save" button at the top of the page.