Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-242551 | ZEBR-10-005505 | SV-242551r714498_rule | Medium |
Description |
---|
Audit logs enable monitoring of security-relevant events and subsequent forensics when breaches occur. For audit logs to be useful, Administrators must have the ability to view the logs. SFR ID: FMT_SMF_EXT.1.1 #32 |
STIG | Date |
---|---|
Zebra Android 10 COPE Security Technical Implementation Guide | 2021-05-27 |
Check Text ( C-45826r714496_chk ) |
---|
Review documentation on the Zebra Android 10 device and inspect the configuration on the Zebra Android 10 device to enable audit logging. This validation procedure is performed on only on the MDM Administration Console. On the MDM console: 1. Open the User restrictions. 2. Open User settings. 3. Select "Enable security logging". 4. Select "Enable network logging". If the MDM console device policy is not set to enable audit logging, this is a finding. |
Fix Text (F-45783r714497_fix) |
---|
Configure the Zebra Android 10 device to enable audit logging. On the MDM console: 1. Open the User restrictions. 2. Open User settings. 3. Select "Enable security logging". 4. Select "Enable network logging". |