Information
If the Samsung DeX Station multimedia dock is connected to a DoD network, the Samsung smartphone connected to the DeX Station will be connected to the DoD network as well. The Samsung smartphone most likely has a number of personal apps installed that may include malware or have high risk behaviors (for example, off load data from the phone to third-party servers outside the United States). In addition, Smartphones do not generally meet security requirements for computer devices to connect directly to DD networks.
Note: The Samsung DeX Station will not work unless "USB host storage" is enabled (see requirement KNOX-07-012600 for more information).
SFR ID: FMT_MOF_EXT.1.2 #47
NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.
Solution
When using the DeX Station multimedia dock with a DoD Samsung smartphone, do not connect the DeX Station to a DoD network via a wired or wireless connection.
Note: This setting cannot be managed by the MDM administrator and is a User Based Enforcement (UBE) requirement.