GOOG-13-012400 - Google Android 13 must allow only the Administrator (MDM) to perform the following management function: Disable Phone Hub.

Information

It may be possible to transfer work profile data on a DOD Android device to an unauthorized ChromeBook if the user has the same Google Account set up on the ChromeBook and in the work profile on the Android device. This may result in the exposure of sensitive DOD data.

SFR ID: FMT_MOF_EXT.1.2 #47

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Configure Google Android 13 device to disable the nearby notification streaming policy to disable Phone Hub.

COPE and COBO:

On the EMM console:
1. Open 'Set user restrictions'.
2. Toggle 'Nearby Streaming Policy' to 'NEARBY_STREAMING_DISABLED'.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Google_Android_13_Y24M07_STIG.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-4, CAT|III, CCI|CCI-001090, Rule-ID|SV-254799r959010_rule, STIG-ID|GOOG-13-012400, Vuln-ID|V-254799

Plugin: MDM

Control ID: 2388213c8bcbd14118b9f71000513cad9a8287f79c72943d3753808a5f1610eb