Skip to content

Apple iOS/iPadOS 17 must not allow backup to remote systems (managed applications data stored in iCloud).

An XCCDF Rule

Description

If a user is able to configure the security setting, the user could inadvertently or maliciously set it to a value that poses unacceptable risk to DOD information systems. An adversary could exploit vulnerabilities created by the weaker configuration to compromise DOD sensitive information. SFR ID: FMT_MOF_EXT.1.2 #40

ID
SV-259191r958524_rule
Version
AIOS-17-003600
Severity
Medium
References
Updated

Remediation Templates

A Manual Procedure

Install a configuration profile to prevent DOD applications from storing data in iCloud.