Skip to content

II - Mission Support Public

Rules and Groups employed by this XCCDF Profile

  • SRG-APP-000439-AS-000155

    <GroupDescription></GroupDescription>
    Group
  • The BlackBerry Enterprise Mobility Server (BEMS) must protect the confidentiality and integrity of transmitted information through the use of an approved TLS version.

    &lt;VulnDiscussion&gt;Preventing the disclosure of transmitted information requires that the application server take measures to employ some form o...
    Rule Medium Severity
  • SRG-APP-000439-AS-000274

    <GroupDescription></GroupDescription>
    Group
  • The BlackBerry Enterprise Mobility Server (BEMS) must remove all export ciphers to protect the confidentiality and integrity of transmitted information.

    &lt;VulnDiscussion&gt;During the initial setup of a Transport Layer Security (TLS) connection to the application server, the client sends a list of...
    Rule Medium Severity
  • SRG-APP-000516-AS-000237

    <GroupDescription></GroupDescription>
    Group
  • The BlackBerry Enterprise Mobility Server (BEMS) must be configured to have at least one user in the following Administrator roles: Server primary administrator, auditor.

    &lt;VulnDiscussion&gt;Having several administrative roles for the BEMS supports separation of duties. This allows administrator-level privileges to...
    Rule Medium Severity
  • SRG-APP-000516-AS-000237

    <GroupDescription></GroupDescription>
    Group
  • The BlackBerry Enterprise Mobility Server (BEMS) must be configured to use Windows Authentication for the database connection.

    &lt;VulnDiscussion&gt;To ensure accountability and prevent unauthorized access, organizational users must be identified and authenticated. Organiza...
    Rule Medium Severity
  • SRG-APP-000516-AS-000237

    <GroupDescription></GroupDescription>
    Group
  • The BlackBerry Enterprise Mobility Server (BEMS) must be configured to use HTTPS.

    &lt;VulnDiscussion&gt;Preventing the disclosure of transmitted information requires that applications take measures to employ some form of cryptogr...
    Rule High Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules