DISA STIGS Viewer

Samsung Android must be configured to display the DOD advisory warning message at startup or each time the user unlocks the device.

Overview

Finding ID Version Rule ID IA Controls Severity
V-269041 KNOX-15-006700 SV-269041r1036219_rule   Low
Description
STIG Date
Samsung Android OS 15 with Knox 3.x COPE Security Technical Implementation Guide 2024-12-10

Details

Check Text (C-73071r1036217_chk)
Confirm if Method #1 or #2 is used at the Samsung device site and follow the appropriate procedure.

This validation procedure is performed on both the management tool and the Samsung Android device.

Validation procedure for Method #1: Place the DOD warning banner in the user agreement signed by each Samsung Android device user.

Review the signed user agreements for several Samsung Android device users and verify the agreement includes the required DOD warning banner text.

Validation procedure for Method #2 (preferred method): Configure the warning banner text in the Lock screen message on each managed mobile device.

On the management tool, in the device restrictions section, verify "Lock Screen Message" is set to the DOD-mandated warning banner text.

On the Samsung Android device, verify the required DOD warning banner text is displayed on the Lock screen.

If the warning text has not been placed in the signed user agreement, or if on the management tool "Lock Screen Message" is not set to the DOD-mandated warning banner text, or on the Samsung Android device the required DOD warning banner text is not displayed on the Lock screen, this is a finding.
Fix Text (F-72972r1036218_fix)
Configure the DOD warning banner by either of the following methods (required text is found in the Vulnerability Description):

Method #1: Place the DOD warning banner in the user agreement signed by each Samsung Android device user.

Method #2 (preferred method): Configure the warning banner text in the Lock screen message on each managed mobile device.

On the management tool, in the device restrictions section, set "Lock Screen Message" to the DOD-mandated warning banner text.