Skip to content

Google Android 14 must be configured to disable trust agents.

An XCCDF Rule

Description

Trust agents allow a user to unlock a mobile device without entering a passcode when the mobile device is, for example, connected to a user-selected Bluetooth device or in a user-selected location. This technology would allow unauthorized users to have access to DOD sensitive data if compromised. By not permitting the use of nonpassword authentication mechanisms, users are forced to use passcodes that meet DOD passcode requirements. SFR ID: FMT_SMF_EXT.1.1 #22, FIA_UAU.5.1

ID
SV-260137r948616_rule
Version
GOOG-14-707200
Severity
Medium
References
Updated

Remediation Templates

A Manual Procedure

Configure the Google Android 14 device to disable trust agents at the same location where the DOD password is implemented (device or work profile).
 
On the EMM console:

1. Open "Lock screen restrictions".
2. Select "Personal Profile".