SV-230093r569708_rule
V-230093
GOOG-09-004500
MOTO-09-004500
CAT II
10
Configure the Motorola Android Pie to enable the access control policy that prevents [selection: application processes, groups of application processes] from accessing [selection: all, private] data stored by other [selection: application processes, groups of application processes].
NOTE: All application data is inherently sandboxed and isolated from other applications.
To disable copy/paste on the MDM console:
1. Open Restrictions settings.
2. Open User Restrictions.
3. Select "Disallow cross profile copy/paste".
4. Select "Disallow sharing data into the profile".
Review documentation on the Motorola Android device and inspect the configuration on the Motorola Android device to verify the access control policy that prevents [selection: application processes] from accessing [selection: all] data stored by other [selection: application processes] is enabled.
This validation procedure is performed only on the MDM Administration Console.
On the MDM console:
1. Open Restrictions settings.
2. Open User Restrictions.
3. Verify "Disallow cross profile copy/paste" is selected.
4. Verify "Disallow sharing data into the profile" is selected.
If the MDM console device policy is not set to disable data sharing between profiles, this is a finding.
V-230093
False
MOTO-09-004500
Review documentation on the Motorola Android device and inspect the configuration on the Motorola Android device to verify the access control policy that prevents [selection: application processes] from accessing [selection: all] data stored by other [selection: application processes] is enabled.
This validation procedure is performed only on the MDM Administration Console.
On the MDM console:
1. Open Restrictions settings.
2. Open User Restrictions.
3. Verify "Disallow cross profile copy/paste" is selected.
4. Verify "Disallow sharing data into the profile" is selected.
If the MDM console device policy is not set to disable data sharing between profiles, this is a finding.
M
4230