The Jamf Pro EMM server must connect to [Authentication Gateway Service (AGS)] with an authenticated and secure (encrypted) connection to protect the confidentiality and integrity of transmitted information.
DISA Rule
SV-241818r961632_rule
Vulnerability Number
V-241818
Group Title
PP-MDM-431009
Rule Version
JAMF-10-200065
Severity
CAT I
CCI(s)
- CCI-002418 - Protect the confidentiality and/or integrity of transmitted information.
- CCI-002420 - Maintain the confidentiality and/or integrity of information during preparation for transmission.
- CCI-002421 - Implement cryptographic mechanisms to prevent unauthorized disclosure of information and/or detect changes to information during transmission.
- CCI-002422 - Maintain the confidentiality and/or integrity of information during reception.
Weight
10
Fix Recommendation
Confirm the Administrator has configured the AGS to connect to the Jamf Pro EMM server using the TLS connection.
Check Contents
Talk to the site Administrator to confirm the AGS has been configured to connect to the Jamf Pro EMM server using the TLS connection or confirm during a review of the AGS.
If the AGS has not been configured to connect to the Jamf Pro EMM server using a TLS connection, this is a finding.
Vulnerability Number
V-241818
Documentable
False
Rule Version
JAMF-10-200065
Severity Override Guidance
Talk to the site Administrator to confirm the AGS has been configured to connect to the Jamf Pro EMM server using the TLS connection or confirm during a review of the AGS.
If the AGS has not been configured to connect to the Jamf Pro EMM server using a TLS connection, this is a finding.
Check Content Reference
M
Target Key
5357