AIOS-18-018200 - Apple iOS/iPadOS 18 must implement the management setting: disable the Bluetooth radio.

Information

Authorizing official (AO) approval is required before the Apple device Bluetooth radio can be enabled. All AO approvals must be documented and based on critical mission need. Use of Bluetooth may lead to the exposure of sensitive DOD information in some operational environments.

SFR ID: FMT_MOF_EXT.1.2 #47

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

If the AO has not approved the use of the Apple device Bluetooth radio, install a configuration profile to disable Bluetooth use. This a supervised-only control.

There are two steps to this procedure:
1. MDM sends device command to device to disable Bluetooth.
2. Include the key 'allowBluetoothModification' set to 'false' in the configuration profile installed on the device.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Apple_iOS-iPadOS_18_V2R2_STIG.zip