UCF STIG Viewer Logo

The UEM Agent must use managed endpoint device key storage for all persistent secret and private keys.


Overview

Finding ID Version Rule ID IA Controls Severity
V-234240 SRG-APP-000176-UEM-100001 SV-234240r617354_rule Medium
Description
If validated secure storage locations are not used for keys, they could be compromised. Satisfies: FCS_STG_EXT.1(2)
STIG Date
Unified Endpoint Management Agent Security Requirements Guide 2020-12-14

Details

Check Text ( C-37425r612026_chk )
This requirement is not applicable if the UEM Agent is provided by the managed endpoint device operating system.

Verify the UEM Agent uses the managed endpoint device key storage for all persistent secret and private keys.

If the UEM Agent does not use the managed endpoint device key storage for all persistent secret and private keys, this is a finding.
Fix Text (F-37390r612027_fix)
Configure the UEM Agent must use the managed endpoint device key storage for all persistent secret and private keys.