DISA STIGS Viewer

Google Android 13 must be configured to display the DOD advisory warning message at startup or each time the user unlocks the Work Profile.

Overview

Finding ID Version Rule ID IA Controls Severity
V-258485 GOOG-13-707700 SV-258485r929493_rule   Low
Description
STIG Date
Google Android 13 BYOAD Security Technical Implementation Guide 2024-02-06

Details

Check Text (C-62225r929491_chk)
The DOD warning banner can be displayed using the following method (required text is found in the Vulnerability Discussion):

By placing the DOD warning banner text in the user agreement signed by each managed Android 13 device user (preferred method).

Note: It is not possible for the EMM to force a warning banner be placed on the device screen when using "work profile for employee-owned devices (BYOD)" deployment mode.

Review the signed user agreements for several Google Android 13 device users and verify the agreement includes the required DOD warning banner text.

If the required warning banner text is not on all signed user agreements reviewed, this is a finding.
Fix Text (F-62134r929492_fix)
Configure the DOD warning banner by the following method (required text is found in the Vulnerability Discussion):

By placing the DOD warning banner text in the user agreement signed by each Google Android 13 device user (preferred method).

Note: It is not possible for the EMM to force a warning banner be placed on the device screen when using "work profile for employee-owned devices (BYOD)" deployment mode.