Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-36284 | SRG-APP-102-MDM-248-MDM | SV-47688r1_rule | High |
Description |
---|
MDM server auditing capability is critical for accurate forensic analysis. The ability to transfer audit logs often is necessary to quickly isolate them, protect their integrity, and analyze their contents. |
STIG | Date |
---|---|
Mobile Device Manager Security Requirements Guide | 2013-01-24 |
Check Text ( C-44524r1_chk ) |
---|
Verify the audit logs can be transferred from managed mobile devices to the MDM server. Review the MDM server mobile device account configuration and have the system administrator show logs of managed mobile devices on the MDM server. If audit logs are not being transferred on request or on a period schedule, this is a finding. |
Fix Text (F-40814r1_fix) |
---|
Configure the MDM server to transfer audit logs from managed mobile devices to the MDM server. |