AIOS-26-017900 - DOD Apple iOS/iPadOS 26 devices must disable eSIM transfers.

Information

eSIM transfers could lead to the unauthorized use of DOD paid cellular service.

SFR ID: FMT_MOF_EXT.1.2 #47

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Install a configuration profile to disable the transfer of an eSIM from one DOD phone to another, unless the service has been approved by the AO. This is a supervised-only control.

Configuration Profile Key: allowESIMOutgoingTransfers

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Apple_iOS-iPadOS_26_V1R2_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|III, CCI|CCI-000366, Rule-ID|SV-278849r1151247_rule, STIG-ID|AIOS-26-017900, Vuln-ID|V-278849

Plugin: MDM

Control ID: b93d9aa159c5574baf4b95df0fc360da9dbcdc4417808bbe2ed9bc2458a92c9f