Zebra Android 13 must be configured to enable audit logging.
Overview
| Finding ID | Version | Rule ID | IA Controls | Severity |
| V-270007 | ZEBR-13-002800 | SV-270007r1052761_rule | Medium |
| Description |
| Audit logs enable monitoring of security-relevant events and subsequent forensics when breaches occur. To be useful, administrators must have the ability to view the audit logs. SFR ID: FMT_SMF_EXT.1.1 #32 |
| STIG | Date |
| Zebra Android 13 COBO Security Technical Implementation Guide | 2024-12-11 |
Details
| Check Text (C-74040r1052759_chk) |
| Inspect the configuration on the managed Zebra Android 13 device to enable audit logging. This validation procedure is performed only on the EMM Administration Console. On the EMM console: COBO and COPE: 1. Open the "Device owner management" section. 2. Verify "Enable security logging" is toggled to "ON". If the EMM console device policy is not set to enable audit logging, this is a finding. |
| Fix Text (F-73941r1052760_fix) |
| Configure the Zebra Android 13 device to enable audit logging. On the EMM console: COBO and COPE: 1. Open the "Device owner management" section. 2. Toggle "Enable security logging" to "ON". |