Skip to content

Microsoft Intune Security Checks

All security checks Aether365 performs for Microsoft Intune.

IDTitleSeverityFramework
AE.1053Intune automatic device clean-up rule is configured.MediumOther
AE.1054Intune built-in Device Compliance Policy marks devices with no compliance policy assigned as 'Not compliant'.MediumOther
AE.1092Intune APNS certificate should be valid for more than 30 daysMediumOther
AE.1093Apple Automated Device Enrollment Tokens should be valid for more than 30 daysMediumOther
AE.1094Apple Volume Purchase Program Tokens should be valid for more than 30 daysMediumOther
AE.1095Android Enterprise account connection should be healthyMediumOther
AE.1096Ensure at least one Intune Multi Admin Approval policy is configuredMediumOther
AE.1097Ensure all Intune Certificate Connectors are healthy and running supported versionsMediumOther
AE.1098Mobile Threat Defense Connectors should be healthyMediumOther
AE.1099Windows Diagnostic Data Processing should be enabledMediumOther
AE.1100Intune Diagnostic Settings should include Audit LogsMediumOther
AE.1101Default Branding Profile should be customizedMediumOther
AE.1102Windows Feature Update Policy Settings should not reference end of support buildsMediumOther
AE.1103Ensure Intune RBAC groups are protected by Restricted Management Administrative Units or Role Assignable groupsMediumOther
AE.1105Ensure MDM Authority is set to IntuneMediumOther
AE.1123Ensure BitLocker full disk encryption is configuredMediumOther
Was deze pagina nuttig?