KNOX-07-913500 - The Samsung Android 7 with Knox must be configured to disable sharing of contact information outside the Container.

Information

Contacts can include DoD-sensitive data and personally identifiable information (PII) of DoD employees, including names, numbers, addresses, and email addresses. If made available outside the container, this information will be accessible to personal applications, resulting in potential compromise of DoD data.

SFR ID: FMT_SMF_EXT.1.1 #47

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Configure the Samsung Android 7 with Knox to enforce disabled sharing of contact information outside the Container.

On the MDM console, do the following:
disable the "Allow contact info outside container" setting in the "Android Knox Container >> Container Restrictions" rule.

See Also

https://iasecontent.disa.mil/stigs/zip/U_Samsung_Android_OS_7_with_Knox_2-x_V1R1_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-91341r1_rule, STIG-ID|KNOX-07-913500, Vuln-ID|V-76645

Plugin: MDM

Control ID: 6f9b24bbc4f8d8ba47b4096ec27e7d0d5d828e426b172d05c551d97f4b8912ff