AIOS-12-000800 - If an unmanaged third-party VPN client is installed on the iOS device, it must not be configured with a DoD network (work) VPN profile.

Information

Access to the DoD network must be limited for unmanaged apps because they are considered untrusted.

SFR ID: FMT_SMF_EXT.1.1 #3

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

If a third-party unmanaged VPN app is installed on the iOS 12 device, do not configure the VPN app with a DoD network VPN profile.

See Also

https://iasecontent.disa.mil/stigs/zip/U_Apple_iOS_12_V1R2_STIG.zip

Item Details

Category: ACCESS CONTROL, CONFIGURATION MANAGEMENT

References: 800-53|AC-19, 800-53|CM-7, CAT|III, CCI|CCI-000068, CSCv6|9.1, Rule-ID|SV-96477r1_rule, STIG-ID|AIOS-12-000800, Vuln-ID|V-81763

Plugin: MDM

Control ID: 17861f9ed8244b8bb81f939d06a62237ef9351e918d18580897239f8295fccd3