Google Android 13 must be configured to display the DOD advisory warning message at startup or each time the user unlocks the Work Profile.
Overview
Finding ID | Version | Rule ID | IA Controls | Severity |
V-258485 | GOOG-13-707700 | SV-258485r929493_rule | Low |
Description |
STIG | Date |
Google Android 13 BYOAD Security Technical Implementation Guide | 2024-02-06 |
Details
Check Text (C-62225r929491_chk) |
The DOD warning banner can be displayed using the following method (required text is found in the Vulnerability Discussion): By placing the DOD warning banner text in the user agreement signed by each managed Android 13 device user (preferred method). Note: It is not possible for the EMM to force a warning banner be placed on the device screen when using "work profile for employee-owned devices (BYOD)" deployment mode. Review the signed user agreements for several Google Android 13 device users and verify the agreement includes the required DOD warning banner text. If the required warning banner text is not on all signed user agreements reviewed, this is a finding. |
Fix Text (F-62134r929492_fix) |
Configure the DOD warning banner by the following method (required text is found in the Vulnerability Discussion): By placing the DOD warning banner text in the user agreement signed by each Google Android 13 device user (preferred method). Note: It is not possible for the EMM to force a warning banner be placed on the device screen when using "work profile for employee-owned devices (BYOD)" deployment mode. |