KNOX-07-913600 - The Samsung must implement the management setting: Disable sharing of notification details outside the Container.

Information

Application notifications can include DoD sensitive data. If made available outside the container, this information will be accessible to personal applications, resulting in potential compromise of DoD data.

SFR ID: FMT_SMF_EXT.1.1 #47

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Configure the Samsung Android 7 with Knox to enforce disabled sharing of notification details outside the Container when the container is locked.

On the MDM console, disable the "Allow Show detailed notifications" setting in the "Android Knox Container >> Container Restrictions" rule.

See Also

https://iasecontent.disa.mil/stigs/zip/U_Samsung_Android_OS_7_with_Knox_2-x_V1R1_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-91343r1_rule, STIG-ID|KNOX-07-913600, Vuln-ID|V-76647

Plugin: MDM

Control ID: 65bd7f494d544d5105d8b9f2d1bc5c327d533160b2cb934b31ee13d96c2ce8dc