GOOG-14-012400 - Google Android 14 must allow only the administrator (MDM) to perform the following management function: Disable Phone Hub - MDM to perform the following management function: Disable Phone Hub.

Information

It may be possible to transfer work profile data on a DOD Android device to an unauthorized Chromebook if the user has the same Google Account set up on the Chromebook and in the work profile on the Android device. This may result in the exposure of sensitive DOD data.

SFR ID: FMT_MOF_EXT.1.2 #47

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Configure Google Android 14 device to disable the nearby notification streaming policy to disable Phone Hub.

COPE and COBO:

On the EMM console:
1. Open 'Nearby notification streaming policy'.
2. Set 'Nearby notification streaming policy' to 'Disabled'.
3. Open 'Nearby app streaming policy'.
4. Set 'Nearby app streaming policy' to 'Disabled'.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Google_Android_14_Y24M07_STIG.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-4, CAT|III, CCI|CCI-001090, Rule-ID|SV-258407r959010_rule, STIG-ID|GOOG-14-012400, Vuln-ID|V-258407

Plugin: MDM

Control ID: 304624ba5e1d6c57e812c9cf32b888516022ecb2ca50b4129046d0d0af7a9e40