GOOG-15-012400 - Google Android 15 must allow only the administrator (MDM) to perform the following management function: Disable Phone Hub - MDM to perform the following management function: Disable Phone Hub.

Information

It may be possible to transfer work profile data on a DOD Android device to an unauthorized Chromebook if the user has the same Google Account set up on the Chromebook and in the work profile on the Android device. This may result in the exposure of sensitive DOD data.

SFRID: FMT_MOF_EXT.1.2 #47

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Configure Google Android 15 device to disable the nearby notification streaming policy to disable Phone Hub.

COPE and COBO:

On the EMM console:

1. Open 'Nearby notification streaming policy'.
2. Set 'Nearby notification streaming policy' to 'Disabled'.
3. Open 'Nearby app streaming policy'.
4. Set 'Nearby app streaming policy' to 'Disabled'.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Google_Android_15_Y25M01_STIG.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-4, CAT|III, CCI|CCI-001090, Rule-ID|SV-267464r1033054_rule, STIG-ID|GOOG-15-012400, Vuln-ID|V-267464

Plugin: MDM

Control ID: bbd861edc08fdf9ab4241fa6566b20937a8ad55378c47c72260b520ae6720195