Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-36291 | SRG-APP-285-NA | SV-47695r1_rule | Medium |
Description |
---|
Any application providing intrusion detection and prevention capabilities must be architected and implemented so as to prevent non-privileged users from circumventing such protections. This can be accomplished through the use of user roles, use of proper systems permissions, auditing, logging, etc. Rationale for non-applicability: The MDM server is not an IDS. |
STIG | Date |
---|---|
Mobile Device Manager Security Requirements Guide | 2013-01-24 |
Check Text ( C-44531r1_chk ) |
---|
This requirement is NA for the MDM server SRG. |
Fix Text (F-40821r1_fix) |
---|
The requirement is NA. No fix is required. |