III - Administrative Sensitive
Rules and Groups employed by this XCCDF Profile
-
The UEM Agent must be configured to enable the following function: read audit logs of the managed endpoint device.
<VulnDiscussion>Audit logs and alerts enable monitoring of security-relevant events and subsequent forensics when breaches occur. They help i...Rule Medium Severity -
SRG-APP-000097
<GroupDescription></GroupDescription>Group -
The UEM Agent must record within each UEM Agent audit record the following information: -date and time of the event -type of event -subject identity -(if relevant) the outcome (success or failure) of the event.
<VulnDiscussion>Audit logs enable monitoring of security-relevant events and subsequent forensics when breaches occur. For audit logs to be u...Rule Medium Severity -
SRG-APP-000175
<GroupDescription></GroupDescription>Group -
The UEM Agent must not install policies if the policy-signing certificate is deemed invalid.
<VulnDiscussion>It is critical that the UEM agent only use validated certificates for policy updates. Otherwise, there is no assurance that a...Rule Medium Severity
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.
Capacity
Modules