SV-103717r1_rule
V-93631
PP-MDF-991000
KNOX-09-001345
CAT II
10
Configure Samsung Android to enable OCSP checking for all apps.
On the MDM, for the device, in the "Knox certificate" group, configure "OCSP check" to "enable for all apps".
Refer to the MDM documentation to determine how to configure OCSP checking to "enable for all apps". Some may, for example, allow a wildcard string: "*" (asterisk).
Review device configuration settings to confirm that OCSP checking is enabled for all apps.
This procedure is performed on the MDM Administration console only.
On the MDM console, for the device, in the "Knox certificate" group, verify that "OCSP check" is configured to "enable for all apps".
If on the MDM console "OCSP check" is not configured to "enable for all apps", this is a finding.
V-93631
False
KNOX-09-001345
Review device configuration settings to confirm that OCSP checking is enabled for all apps.
This procedure is performed on the MDM Administration console only.
On the MDM console, for the device, in the "Knox certificate" group, verify that "OCSP check" is configured to "enable for all apps".
If on the MDM console "OCSP check" is not configured to "enable for all apps", this is a finding.
M
3497