KNOX-07-004500 - The Samsung Android 7 with Knox must be configured to disable USB mass storage mode.

Information

USB mass storage mode enables the transfer of data and software from one device to another. This software can include malware. When USB mass storage is enabled on a mobile device, it becomes a potential vector for malware and unauthorized data exfiltration. Prohibiting USB mass storage mode mitigates this risk.

SFR ID: FMT_SMF_EXT.1.1 #39a

Solution

Configure the Samsung Android 7 with Knox to disable USB mass storage mode.

On the MDM console, select the "Disable USB Media Player" checkbox in the "Android Restrictions" rule.

See Also

https://iasecontent.disa.mil/stigs/zip/U_Samsung_Android_OS_7_with_Knox_2-x_V1R1_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7a., CAT|II, CCI|CCI-000381, Rule-ID|SV-91249r1_rule, STIG-ID|KNOX-07-004500, Vuln-ID|V-76553

Plugin: MDM

Control ID: 4095ed9ce2ed1bbf40268cdfd942bafeff0cc62dadda81801b3645e617bb2c42