STIGQter STIGQter: STIG Summary: Omnissa WS1 UEM API Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 26 May 2026:

The Omnissa WS1 UEM API must employ throttling.

DISA Rule

SV-284197r1223938_rule

Vulnerability Number

V-284197

Group Title

SRG-APP-000247-API-000520

Rule Version

OMW1-API-002700

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Implement WS1 UEM REST API server bandwidth throttling using the following procedures:

1. Log in to the WS1 UEM console.
2. Navigate to Groups & Settings >> All Settings >> System >> Advanced >> API >> REST API >> User tab.
3. Set the server throttling based on the site operational environment.

Note: The User tab may not be viewable if the WS1 UEM organizational group instance does not have permission to access configuration settings available on the User tab. In this case, have the SA of the top organizational group configure the throttling setting.

Check Contents

Verify WS1 UEM REST API server bandwidth throttling has been configured. Specific configuration settings should be based on the site operational environment.

1. Log in to the WS1 UEM console.
2. Navigate to Groups & Settings >> All Settings >> System >> Advanced >> API >> REST API >> User tab.
3. Verify the server throttling has been set based on the site operational environment.

Note: The User tab may not be viewable if the WS1 UEM organizational group instance does not have permission to access configuration settings available on the User tab. In this case, have the system administrator (SA) of the top organizational group confirm throttling has been set.

If WS1 UEM REST API server bandwidth throttling has not been configured, this is a finding.

Vulnerability Number

V-284197

Documentable

False

Rule Version

OMW1-API-002700

Severity Override Guidance

Verify WS1 UEM REST API server bandwidth throttling has been configured. Specific configuration settings should be based on the site operational environment.

1. Log in to the WS1 UEM console.
2. Navigate to Groups & Settings >> All Settings >> System >> Advanced >> API >> REST API >> User tab.
3. Verify the server throttling has been set based on the site operational environment.

Note: The User tab may not be viewable if the WS1 UEM organizational group instance does not have permission to access configuration settings available on the User tab. In this case, have the system administrator (SA) of the top organizational group confirm throttling has been set.

If WS1 UEM REST API server bandwidth throttling has not been configured, this is a finding.

Check Content Reference

M

Target Key

5749