MSFT-11-002800 - Microsoft Android 11 must be configured to disable developer modes.

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Developer modes expose features of the Microsoft Android device that are not available during standard operation. An adversary may leverage a vulnerability inherent in a developer mode to compromise the confidentiality, integrity, and availability of DOD sensitive information. Disabling developer modes mitigates this risk.

SFR ID: FMT_SMF_EXT.1.1 #26

Solution

Configure the Microsoft Android 11 device to disable developer modes.

On the EMM console:
1. Open 'Set user restrictions' section.
2. Toggle 'Disallow debugging features' to 'On'.
3. Open 'Set user restrictions on parent' section.
4. Toggle 'Disallow debugging features' to 'On'.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_Android_11_STIG.zip

Item Details

References: CAT|II, CCI|CCI-000381, Rule-ID|SV-255179r870675_rule, STIG-ID|MSFT-11-002800, Vuln-ID|V-255179

Plugin: MDM

Control ID: 4a8579df555c84b17c9d425ac47d72add79b61bef6b5f939d6c9aa1e83fa97b2