UCF STIG Viewer Logo

The MDM server must support organizational requirements to install software updates automatically on managed mobile devices.


Overview

Finding ID Version Rule ID IA Controls Severity
V-36162 SRG-APP-269-MDM-161-MAM SV-47566r1_rule Medium
Description
Security faults with software applications and operating systems are discovered daily and vendors are constantly updating and patching their products to address newly discovered security vulnerabilities. Flaws discovered during security assessments, continuous monitoring, incident response activities, or information system error handling, must also be addressed expeditiously. By having the MDM server installing software updates automatically, devices stay current and are less prone to zero day attacks. Automatic software installation could be performed during a wired or over-the-air (OTA) session.
STIG Date
Mobile Device Manager Security Requirements Guide 2013-01-24

Details

Check Text ( C-44402r1_chk )
Review the MDM server configuration to ensure the MDM server is configured to support organizational requirements to install software update automatically on managed mobile devices. If this function is not configured, this is a finding.
Fix Text (F-40692r1_fix)
Configure the MDM server to install software updates automatically on managed mobile devices.