Skip to main content
CUI

Documentation - V-225655

V-225655

Samsung SDS EMM Security Technical Implementation Guide

CAT II

Title

The Samsung SDS EMM must automatically disable accounts after a 35 day period of account inactivity (local accounts).

Description

<VulnDiscussion>Attackers that are able to exploit an inactive account can potentially obtain and maintain undetected access to an application. Owners of inactive accounts will not notice if unauthorized access to their user account has been obtained. Applications need to track periods of user inactivity and disable accounts after 35 days of inactivity. Such a process greatly reduces the risk that accounts will be hijacked, leading to a data compromise. To address access requirements, many app...

Fix Text (Documentation Requirement)

Configure the Samsung SDS EMM to disable accounts after 35 days. On the MDM console, do the following: 1. Log in to the Admin Console using a web browser. 2. Go to Setting >> Server >> Configuration and set Inactivity Limit on Admin Accounts (days) to "35" days. 3. Click the "Save" button.

Documentation Status

Cancel
CUI