Skip to content

I - Mission Critical Sensitive

Rules and Groups employed by this XCCDF Profile

  • The UEM Agent must be configured to enable the following function: transfer managed endpoint device audit logs read by the UEM Agent to an UEM server or third-party audit management server.

    <VulnDiscussion>Audit logs and alerts enable monitoring of security-relevant events and subsequent forensics when breaches occur. They help i...
    Rule Medium Severity
  • SRG-APP-000427

    <GroupDescription></GroupDescription>
    Group
  • The UEM Agent must only accept policies and policy updates that are digitally signed by a certificate that has been authorized for policy updates by the UEM Server.

    &lt;VulnDiscussion&gt;It is critical that the UEM agent only use validated certificates for policy updates. Otherwise, there is no assurance that a...
    Rule Medium Severity
  • SRG-APP-000427

    <GroupDescription></GroupDescription>
    Group
  • The UEM Agent must perform the following functions: Import the certificates to be used for authentication of UEM Agent communications.

    &lt;VulnDiscussion&gt;It is critical that the UEM agent only use validated certificates for policy updates. Otherwise, there is no assurance that a...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules