Skip to content

Apple iOS-iPadOS 16 Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • Apple iOS/iPadOS 16 must not allow backup to remote systems (iCloud Keychain).

    If a user is able to configure the security setting, the user could inadvertently or maliciously set it to a value that poses unacceptable risk to DoD information systems. An adversary could exploi...
    Rule Medium Severity
  • Apple iOS/iPadOS 16 must [selection: remove Enterprise application, remove all noncore applications (any nonfactory-installed application)] upon unenrollment from MDM.

    When a mobile device is no longer going to be managed by MDM technologies, its protected/sensitive data must be sanitized because it will no longer be protected by the MDM software, putting it at m...
    Rule Medium Severity
  • Apple iOS/iPadOS 16 must be configured to enforce a minimum password length of six characters.

    Password strength is a measure of the effectiveness of a password in resisting guessing and brute force attacks. The ability to crack a password is a function of how many attempts an adversary is p...
    Rule Medium Severity
  • Apple iOS/iPadOS 16 must be configured to not allow more than 10 consecutive failed authentication attempts.

    The more attempts an adversary has to guess a password, the more likely the adversary will enter the correct password and gain access to resources on the device. Setting a limit on the number of at...
    Rule Medium Severity
  • Apple iOS/iPadOS 16 must not include applications with the following characteristics: access to Siri when the device is locked.

    Requiring all authorized applications to be in an application allow list prevents the execution of any applications (e.g., unauthorized, malicious) that are not part of the allow list. Failure to c...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules