Android 13 devices must be configured to disable the use of third-party keyboards (work profile only).

Overview

Finding IDVersionRule IDIA ControlsSeverity
V-258496GOOG-13-710900SV-258496r929526_ruleCCI-000366low
Description
Many third-party keyboard applications are known to contain malware. SFR ID: FMT_SMF_EXT.1.1 #47
STIGDate
Google Android 13 BYOAD Security Technical Implementation Guide2024-02-06

Details

Check Text (C-258496r929526_chk)

Review the managed Google Android 13 configuration settings to confirm that no third-party keyboards are enabled (work profile only). This procedure is performed on the EMM console. On the EMM console: 1. Open "Input methods". 2. Tap "Set input methods". 3. Verify only the approved keyboards are selected. If unapproved third-party keyboards are allowed in the work profile, this is a finding.

Fix Text (F-62145r929525_fix)

Configure the Google Android 13 device to disallow the use of third-party keyboards (work profile only). On the EMM console: 1. Open "Input methods". 2. Tap "Set input methods". 3. Select only the approved keyboards. Additionally, admins can configure application allowlists for Google Play so no third-party keyboards are available for user installation.