SV-96489r1_rule
V-81775
PP-MDF-301200
AIOS-12-003600
CAT III
10
Configure the DoD warning banner by either of the following methods (required text is found in the Vulnerability Description):
1. By placing the DoD warning banner text in the user agreement signed by each iOS device user (preferred method)
2. By creating a background picture with the relevant information and configuring that picture as the background for the lock screen via the Apple iOS management tool
The DoD warning banner can be displayed by either of the following methods (required text is found in the Vulnerability Description):
1. By placing the DoD warning banner text in the user agreement signed by each iOS device user (preferred method)
2. By creating a background picture with the relevant information and configuring that picture as the background for the lock screen via the Apple iOS management tool (only available for supervised devices)
Determine which method is used at the iOS device site and follow the appropriate validation procedure below.
Validation Procedure for Method #1:
Review the signed user agreements for several iOS device users and verify the agreement includes the required DoD warning banner text.
Validation Procedure for Method #2:
- In the Apple iOS management tool, verify a picture of the DoD warning banner text has been configured as the background for the lock screen.
- On the iOS device, verify a picture of the DoD warning banner text is shown as the background for the locked screen.
If, for Method #1, the required warning banner text is not on all signed user agreements reviewed, or for Method #2, the DoD warning banner text is not set as the locked screen background, this is a finding.
V-81775
False
AIOS-12-003600
The DoD warning banner can be displayed by either of the following methods (required text is found in the Vulnerability Description):
1. By placing the DoD warning banner text in the user agreement signed by each iOS device user (preferred method)
2. By creating a background picture with the relevant information and configuring that picture as the background for the lock screen via the Apple iOS management tool (only available for supervised devices)
Determine which method is used at the iOS device site and follow the appropriate validation procedure below.
Validation Procedure for Method #1:
Review the signed user agreements for several iOS device users and verify the agreement includes the required DoD warning banner text.
Validation Procedure for Method #2:
- In the Apple iOS management tool, verify a picture of the DoD warning banner text has been configured as the background for the lock screen.
- On the iOS device, verify a picture of the DoD warning banner text is shown as the background for the locked screen.
If, for Method #1, the required warning banner text is not on all signed user agreements reviewed, or for Method #2, the DoD warning banner text is not set as the locked screen background, this is a finding.
M
3401