AIOS-18-016200 - Apple iOS/iPadOS 18 must disable the use of voice assistant (Show user-generated content in Siri) unless required to meet Section 508 compliance requirements.

Information

The use of voice assistants could expose sensitive DOD data to cloud-based servers during the processing of assistant requests.

SFR ID: FMT_MOF_EXT.1.2 #47

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Install a configuration profile to disable 'Show user-generated content in Siri' unless required to meet Section 508 compliance requirements. This is a supervised-only control.

Note: This control may not be configurable by some MDM products when 'Allow Siri' is disabled.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Apple_iOS-iPadOS_18_V2R2_STIG.zip