Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-258408 | GOOG-14-002800 | SV-258408r928249_rule | Medium |
Description |
---|
Audit logs enable monitoring of security-relevant events and subsequent forensics when breaches occur. To be useful, administrators must have the ability to view the audit logs. SFR ID: FMT_SMF_EXT.1.1 #32 |
STIG | Date |
---|---|
Google Android 14 COPE Security Technical Implementation Guide | 2023-10-04 |
Check Text ( C-62149r928247_chk ) |
---|
Inspect the configuration on the managed Google Android 14 device to enable audit logging. This validation procedure is performed only on the EMM Administration Console. On the EMM console: COBO and COPE: 1. Open "Device owner management" section. 2. Verify that "Enable security logging" is toggled to "ON". If the EMM console device policy is not set to enable audit logging, this is a finding. |
Fix Text (F-62073r928248_fix) |
---|
Configure the Google Android 14 device to enable audit logging. On the EMM console: COBO and COPE: 1. Open "Device owner management" section. 2. Toggle "Enable security logging" to "ON". |