Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-36427 | SRG-APP-052-NA | SV-47831r1_rule | Medium |
Description |
---|
The application enforces approved authorizations for controlling the flow of information within the system and between interconnected systems in accordance with applicable policy. Information flow control regulates where information is allowed to travel within an information system and between information systems (as opposed to who is allowed to access the information) and without explicit regard to subsequent accesses to that information. Rationale for non-applicability: This vulnerability is better addressed by another CCI. CCI-000066 deals with remote access to the device. |
STIG | Date |
---|---|
Mobile Device Manager Security Requirements Guide | 2013-01-24 |
Check Text ( C-44669r1_chk ) |
---|
This requirement is NA for the MDM server SRG. |
Fix Text (F-40959r1_fix) |
---|
The requirement is NA. No fix is required. |