UCF STIG Viewer Logo

BlackBerry 10 OS STIG



Findings (MAC III - Administrative Sensitive)

Finding ID Severity Title
BB10-00-000310 High Only DoD PKI issued or DoD approved software authentication certificates may be installed on the work space of the BlackBerry 10 OS.
BB10-00-000220 High BlackBerry 10 OS must prevent a user from installing unapproved applications.
BB10-00-000360 Medium BlackBerry 10 OS must employ mobile device management services to centrally manage IT Policies.
BB10-00-000240 Medium BlackBerry 10 OS's Wi-Fi module must use EAP-TLS authentication when authenticating to DoD WLAN authentication servers.
BB10-00-000320 Medium Only DoD PKI issued or DoD approved server authentication certificates may be installed on the work space of the BlackBerry 10 OS.
BB10-00-000410 Medium BlackBerry 10 OS must prohibit wireless remote access connections for storage.
BB10-00-000290 Medium BlackBerry 10 OS must prohibit the use of non-DoD authorized instant messaging (IM) systems.
BB10-00-000390 Medium BlackBerry 10 OS must employ mobile device management services to centrally manage VPN profiles.
BB10-00-000120 Medium BlackBerry 10 OS must retain the device lock until the user reestablishes access using established identification and authentication procedures.
BB10-00-000230 Medium BlackBerry 10 OS must only permit download of software from a DoD approved source (e.g., DoD operated mobile device application store or MDM server).
BB10-00-000160 Medium BlackBerry 10 OS must disallow the device unlock password from containing fewer than a specified minimum numbers of upper case alphabetic characters.
BB10-00-000370 Medium BlackBerry 10 OS must employ mobile device management services to centrally manage email settings.
BB10-00-000210 Medium BlackBerry 10 OS must enforce a minimum length for the work area password.
BB10-00-000140 Medium BlackBerry 10 OS must prevent applications from extending the password lock time.
BB10-00-000270 Medium BlackBerry 10 OS's VPN client must use either IPSec or SSL/TLS when connecting to DoD networks.
BB10-00-000330 Medium BlackBerry 10 OS must prevent a user from using a browser that does not direct its traffic to a DoD proxy server.
BB10-00-000250 Medium BlackBerry 10 OS VPN client must employ DoD approved PKI mechanisms for authentication when connecting to DoD networks.
BB10-00-000180 Medium BlackBerry 10 OS must disallow the device unlock password from containing fewer than a specified minimum number of numeric characters.
BB10-00-000400 Medium BlackBerry 10 OS must re-encrypt all device data when the device is locked.
BB10-00-000420 Medium BlackBerry 10 OS must prohibit wireless remote access connections for media sharing
BB10-00-000380 Medium BlackBerry 10 OS must employ mobile device management services to centrally manage Wi-Fi profiles.
BB10-00-000130 Medium BlackBerry 10 OS must lock the device after no more than 15 minutes of inactivity.
BB10-00-000110 Medium BlackBerry 10 OS must retain the device lock until the user reestablishes access using established identification and authentication procedures.
BB10-00-000340 Medium BlackBerry 10 OS must prevent a user from using a browser that does not direct its traffic to a DoD proxy server.
BB10-00-000170 Medium BlackBerry 10 OS must disallow the device unlock password from containing fewer than a specified minimum number of lower case alphabetic characters.
BB10-00-000200 Low BlackBerry 10 OS must prohibit a user from reusing any of the last five previously used device unlock passwords.
BB10-00-000150 Low BlackBerry 10 OS must synchronize the internal clock at least once every 24 hours with an authoritative time server or the Global Positioning System.
BB10-00-000260 Low BlackBerry 10 OS must cryptographically bind the removable media to the mobile device so data stored on the removable media can only be read by that mobile device.
BB10-00-000190 Low BlackBerry 10 OS must enforce a maximum lifetime of 120 days for the device unlock password (password age).
BB10-00-000430 Low BlackBerry 10 OS must enable a system administrator to select which data fields will be available to applications outside of the contact database application.
BB10-00-000100 Low BlackBerry 10 OS must display the DoD warning banner exactly as specified at startup device unlock.