UCF STIG Viewer Logo

BlackBerry 10 OS must prevent a user from installing unapproved applications.


Overview

Finding ID Version Rule ID IA Controls Severity
V-47183 BB10-2X-000220 SV-60055r5_rule Medium
Description
The operating system must enforce software installation by users based upon what types of software installations are permitted (e.g., updates and security patches to existing software) and what types of installations are prohibited (e.g., software whose pedigree with regard to being potentially malicious is unknown or suspect) by the organization. The installation and execution of unauthorized software on an operating system may allow the application to obtain sensitive information or further compromise the system. Preventing a user from installing unapproved applications mitigates this risk. When the Development Mode is enabled on BlackBerry 10 OS devices, the user has the capability to sideload apps to either the Work Space or Personal Space. Disabling this feature removes the capability for a user to sideload apps.
STIG Date
BlackBerry 10.2.x OS Security Technical Implementation Guide 2015-07-02

Details

Check Text ( C-50009r2_chk )
From either the Work Space or Personal Space, navigate to "Settings >> Security and Privacy >> Development Mode" and verify "Use Development Mode" is set to "OFF" and grayed out.

Otherwise, this is a finding.
Fix Text (F-50887r3_fix)
On BlackBerry Device Service, set the IT Policy rule "Restrict Development Mode" to "Yes".