STIGQter STIGQter: STIG Summary: Unified Endpoint Management Agent Security Requirements Guide Version: 2 Release: 2 Benchmark Date: 29 Jun 2026:

The UEM Agent must not install policies if the policy-signing certificate is deemed invalid.

DISA Rule

SV-234239r1213333_rule

Vulnerability Number

V-234239

Group Title

SRG-APP-000175

Rule Version

SRG-APP-000175-UEM-100008

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the UEM Agent to not install policies if the policy-signing certificate is deemed invalid.

Check Contents

Verify the UEM Agent does not install policies if the policy-signing certificate is deemed invalid.

If the UEM Agent installs policies when the policy-signing certificate is deemed invalid, this is a finding.

Vulnerability Number

V-234239

Documentable

False

Rule Version

SRG-APP-000175-UEM-100008

Severity Override Guidance

Verify the UEM Agent does not install policies if the policy-signing certificate is deemed invalid.

If the UEM Agent installs policies when the policy-signing certificate is deemed invalid, this is a finding.

Check Content Reference

M

Target Key

5262