UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

Google Android 14 must prohibit DOD VPN profiles in the Personal Profile.


Overview

Finding ID Version Rule ID IA Controls Severity
V-260082 GOOG-14-701100 SV-260082r948451_rule Medium
Description
If DOD VPN profiles are configured in the Personal Profile DOD sensitive data world be at risk of compromise and the DOD network could be at risk of being attacked by malware installed on the device. SFR ID: FMT_SMF_EXT.1.1 #3
STIG Date
Google Android 14 MDFPP 3.3 BYOAD Security Technical Implementation Guide 2024-02-20

Details

Check Text ( C-63813r948449_chk )
Review the list of VPN profiles in the Personal Profile and determine if any VPN profiles are listed. If so, verify the VPN profiles are not configured with a DOD network VPN profile.

If any VPN profiles are installed in the Personal Profile and they have a DOD network VPN profile configured, this is a finding.
Note: This setting cannot be managed by the MDM administrator and is a User-Based Enforcement (UBE) requirement.
Fix Text (F-63720r948450_fix)
Do not configure DOD VPN profiles in the Personal Profile. If there is a DOD VPN profile configured in the Personal Profile, remove it.