Free DISA STIG and SRG Library | Vaulted

V-53167

The Good Mobility Suite server must disable the use of simple values within the iOS Good Mobility Server agent password via centrally managed policy.

Finding ID
GOOD-00-000300
Rule ID
SV-67383r1_rule
Severity
Cat II
CCE
(None)
Group Title
SRG-APP-000135-MDM-000087-MDM
CCI
CCI-000370
Target Key
(None)
Documentable
No
Discussion

Security-related parameters are those parameters impacting the security state of the system and include parameters related to the implementation of other IA controls. If these controls are not implemented, the system may be vulnerable to a variety of attacks. The use of a Good Mobility Suite allows an organization to assign values to security-related parameters across all the devices it manages. This provides assurance that the required mobile OS security controls are being enforced and that the device user or an adversary has not modified or disabled the controls. It also greatly increases efficiency and manageability of devices in a large-scale environment relative to an environment in which each device must be configured separately.

Fix Text

Configure the centrally managed Good Mobility Suite security policy rule to disable the use of simple values within the iOS Good Mobility Server agent password. -Launch the Good Mobile Control Web console and click on the Policies tab -Select the policy set for the smart phone and click on Good For Enterprise Authentication -On the left tab, select iOS Configuration and select the Passcode Tab -Verify Allow Simple Value is unchecked

Check Content

Review the Good Mobility Suite server policy configuration to determine whether the use of simple values within the iOS Good Mobility Server agent password has been disabled. If there are multiple policies, they must all be reviewed. Otherwise, this is a finding.