The iOS/iPadOS 16 BYOAD must be configured to protect users' privacy, personal information, and applications.

Severity
Group ID
Group Title
Version
Rule ID
Date
STIG Version
lowV-257095PP-BYO-000120AIOS-16-800120SV-257095r904030_rule2023-08-141

Description

A key construct of a BYOAD is that user personal information and data are protected from exposure to the enterprise. Reference: DOD policy "Use of Non-Government Mobile Devices". 3.b.(4), 3.b.(5). SFR ID: FMT_SMF_EXT.1.1 #47

ℹ️ Check

Verify the EMM system has been configured to limit access to unmanaged data and apps on the iOS/iPadOS 16 BYOAD to protect users' privacy, personal information, and applications. The exact procedure will depend on the EMM system used at the site. If the BYOAD has not been configured to limit access to unmanaged data and apps on the iOS/iPadOS 16 BYOAD, this is a finding.

✔️ Fix

Configure the EMM system to limit access to unmanaged data and apps on the iOS/iPadOS 16 BYOAD to protect users' privacy, personal information, and applications. The exact procedure will depend on the EMM system used at the site.