The UEM Agent must queue alerts if the trusted channel is not available.

Overview

Finding IDVersionRule IDIA ControlsSeverity
V-234241SRG-APP-000358-UEM-100003SV-234241r617354_ruleCCI-001851medium
Description
Alerts providing notification of a change in enrollment state facilitate verification of the correct operation of security functions. When an UEM server receives such an alert from an UEM Agent, it indicates the security policy may no longer be enforced on the mobile device. This enables the UEM administrator to take an appropriate remedial action. Satisfies: FAU_ALT_EXT.2.2
STIGDate
Unified Endpoint Management Agent Security Requirements Guide2020-12-14

Details

Check Text (C-234241r617354_chk)

Verify the UEM Agent queues alerts if the trusted channel is not available. If the UEM Agent does not queue alerts if the trusted channel is not available, this is a finding.

Fix Text (F-37391r612030_fix)

Configure the UEM Agent to queue alerts if the trusted channel is not available.