UCF STIG Viewer Logo

The application must validate the binding of the reviewers identity to the information at the transfer/release point prior to release/transfer from one security domain to another security domain.


Overview

Finding ID Version Rule ID IA Controls Severity
V-36272 SRG-APP-084-NA SV-47676r1_rule Medium
Description
This non-repudiation control enhancement is intended to mitigate the risk that information could be modified between review and transfer/release particularly when transfer is occurring between security domains. Rationale for non-applicability: The MDM server is not intended to store user data and therefore would not employ notions of chain of custody.
STIG Date
Mobile Device Manager Security Requirements Guide 2013-01-24

Details

Check Text ( C-44512r1_chk )
This requirement is NA for the MDM server SRG.
Fix Text (F-40802r1_fix)
The requirement is NA. No fix is required.