UCF STIG Viewer Logo

The operating system must not allow users to introduce removable media into the information system.


Overview

Finding ID Version Rule ID IA Controls Severity
V-33186 SRG-OS-000195-NA SV-43584r1_rule Medium
Description
Malicious code is known to propagate via removable media such as floppy disks, USB or flash drives, and removable hard drives. Rationale for non-applicability: Mobile OS devices use removable media (i.e., SD cards) for many storage purposes and may be required for operation in some cases. This precludes a prohibition on removable media. However, to help ensure proper use of the removable media, the MOS SRG requires that removable media be cryptographically bound to the operating system and that all data on the removable media be encrypted. This prevents the removable media from being used on another device.
STIG Date
Mobile Operating System Security Requirements Guide 2013-07-03

Details

Check Text ( C-41447r1_chk )
This requirement is NA for the Mobile OS SRG.
Fix Text (F-37087r1_fix)
The requirement is NA. No fix is required.