AIOS-18-016000 - Apple iOS/iPadOS 18 must disable the ability of the user to wipe the device.

Information

This feature must be disabled to comply with DOD electronic records retention requirements for mobile devices. Otherwise, mobile device users could wipe the device, which would violate DOD policy.

SFR ID: FMT_MOF_EXT.1.2 #47

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Install a configuration profile to disable 'Allow Erase All Content and Settings'. This is a supervised-only control.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Apple_iOS-iPadOS_18_V1R4_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-276199r1115666_rule, STIG-ID|AIOS-18-016000, Vuln-ID|V-276199

Plugin: MDM

Control ID: f8d600d7d53e7e060fe43ee109ba7040320ed8a070d337d15f59416cedc56396