The UEM server must be configured to use DoD PKI for multifactor authentication. This requirement is included in SRG-APP-000149.
DISA Rule
SV-234361r617355_rule
Vulnerability Number
V-234361
Group Title
SRG-APP-000154
Rule Version
SRG-APP-000154-UEM-000088
Severity
CAT II
CCI(s)
- CCI-001936 - The information system implements multifactor authentication for network access to privileged accounts such that one of the factors is provided by a device separate from the system gaining access.
Weight
10
Fix Recommendation
Configure the UEM server to use DoD PKI for multifactor authentication.
Check Contents
Verify the UEM server uses DoD PKI for multifactor authentication.
If the UEM server does not use DoD PKI for multifactor authentication, this is a finding.
Vulnerability Number
V-234361
Documentable
False
Rule Version
SRG-APP-000154-UEM-000088
Severity Override Guidance
Verify the UEM server uses DoD PKI for multifactor authentication.
If the UEM server does not use DoD PKI for multifactor authentication, this is a finding.
Check Content Reference
M
Target Key
5269
Comments