Google Android 15 must be configured to enable audit logging.
Overview
| Finding ID | Version | Rule ID | IA Controls | Severity |
| V-267525 | GOOG-15-002800 | SV-267525r1031760_rule | CCI-000154 | medium |
| Description | ||||
| Audit logs enable monitoring of security-relevant events and subsequent forensics when breaches occur. To be useful, administrators must have the ability to view the audit logs. SFRID: FMT_SMF.1.1 #32 | ||||
| STIG | Date | |||
| Google Android 15 COPE Security Technical Implementation Guide | 2024-12-05 | |||
Details
Check Text (C-267525r1031760_chk)
Inspect the configuration on the managed Google Android 15 device to enable audit logging.
This validation procedure is performed only on the EMM Administration Console.
On the EMM console:
COBO and COPE:
1. Open "Device owner management" section.
2. Verify that "Enable security logging" is toggled to "ON".
If the EMM console device policy is not set to enable audit logging, this is a finding.
Fix Text (F-71352r1031759_fix)
Configure the Google Android 15 device to enable audit logging.
On the EMM console:
COBO and COPE:
1. Open "Device owner management" section.
2. Toggle "Enable security logging" to "ON".