STIGQter STIGQter: STIG Summary: Unified Endpoint Management Server Security Requirements Guide Version: 2 Release: 5 Benchmark Date: 29 Jun 2026:

The UEM server must provide digitally signed policies and policy updates to the UEM agent.

DISA Rule

SV-256892r1213323_rule

Vulnerability Number

V-256892

Group Title

SRG-APP-000427

Rule Version

SRG-APP-000427-UEM-000500

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Configure the UEM server to sign all policy updates sent to the UEM Agent with validated certificates.

Check Contents

Verify the UEM server is signing all policy updates sent to the UEM Agent with validated certificates.

If the UEM server is not signing all policy updates sent to the UEM Agent with validated certificates, this is a finding.

Vulnerability Number

V-256892

Documentable

False

Rule Version

SRG-APP-000427-UEM-000500

Severity Override Guidance

Verify the UEM server is signing all policy updates sent to the UEM Agent with validated certificates.

If the UEM server is not signing all policy updates sent to the UEM Agent with validated certificates, this is a finding.

Check Content Reference

M

Target Key

5269