Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-252868 | ZEBR-11-005505 | SV-252868r820531_rule | Medium |
Description |
---|
Audit logs enable monitoring of security-relevant events and subsequent forensics when breaches occur. To be useful, Administrators must have the ability to view the audit logs. SFR ID: FMT_SMF_EXT.1.1 #32 |
STIG | Date |
---|---|
Zebra Android 11 COBO Security Technical Implementation Guide | 2023-08-28 |
Check Text ( C-56324r820529_chk ) |
---|
Review documentation on the Zebra Android device and inspect the configuration on the Zebra Android device to enable audit logging. This validation procedure is performed on only on the EMM Administration Console. On the EMM console, do the following: 1. Open "Device owner management" section. 2. Verify that "Enable security logging" is toggled to "On". If the EMM console device policy is not set to enable audit logging, this is a finding. |
Fix Text (F-56274r820530_fix) |
---|
Configure the Zebra Android 11 device to enable audit logging. On the EMM console: 1. Open "Device owner management" section. 2. Toggle "Enable security logging" to "On". |