1.10 Ensure 'Install unknown apps' is set to 'Disabled'

Information

Disable installation of apps from unknown sources.
The recommended state for this setting is: Disabled.

Rationale:

This setting determines whether applications can be installed from locations other than Google Play. Disabling installation from untrusted distribution channels protects against inadvertent installation of untrusted or malicious applications. Apps on Google play are vetted by Google Security Team and are mostly safe to install. You should avoid installing apps from anywhere else.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Follow the below steps to disable Install unknown apps:

Tap Settings Gear Icon.
Tap Apps & notifications.
Tap Advanced.
Tap Special app access.
Tap Install unknown apps.
Tap any app showing Allowed.
Toggle Allow from this source to OFF position.

Impact:

None

Default Value:

By default, Install unknown apps is disabled.

See Also

https://workbench.cisecurity.org/files/2466

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7b., CSCv6|2

Plugin: MDM

Control ID: 7a8585b581376e5cc0c4936fddad146e66f74a725c987da1d271b86cbfd49efd