GOOG-12-011000 - Android 12 devices must be configured to enable Common Criteria Mode (CC Mode).

Information

The CC Mode feature is a superset of other features and behavioral changes that are mandatory MDFPP requirements. If CC mode is not implemented the device will not be operating in the NIAP-certified compliant CC Mode of operation.

CC Mode implements the following behavioral/functional changes: how the Bluetooth and Wi-Fi keys are stored using different types of encryption.

SFR ID: FMT_SMF_EXT.1.1 #47

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Configure the Google Android 12 device to implement CC Mode.

On the EMM console:

COBO and COPE:

1. Open Device owner management.
2. Toggle 'Enable Common Criteria mode' to ON.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Google_Android_12_Y24M07_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|III, CCI|CCI-000366, Rule-ID|SV-250413r959010_rule, STIG-ID|GOOG-12-011000, Vuln-ID|V-250413

Plugin: MDM

Control ID: 1243bf63077f04d25f5df93748309892794b11333a627a38be487ec55c74c134