UCF STIG Viewer Logo

The application must bind security attributes to information to facilitate information flow policy enforcement.


Overview

Finding ID Version Rule ID IA Controls Severity
V-36427 SRG-APP-052-NA SV-47831r1_rule Medium
Description
The application enforces approved authorizations for controlling the flow of information within the system and between interconnected systems in accordance with applicable policy. Information flow control regulates where information is allowed to travel within an information system and between information systems (as opposed to who is allowed to access the information) and without explicit regard to subsequent accesses to that information. Rationale for non-applicability: This vulnerability is better addressed by another CCI. CCI-000066 deals with remote access to the device.
STIG Date
Mobile Device Manager Security Requirements Guide 2013-01-24

Details

Check Text ( C-44669r1_chk )
This requirement is NA for the MDM server SRG.
Fix Text (F-40959r1_fix)
The requirement is NA. No fix is required.