Honeywell Android 13 must be configured to enable audit logging.

Overview

Finding IDVersionRule IDIA ControlsSeverity
V-274317HONW-13-002800SV-274317r1100404_ruleCCI-000154medium
Description
Audit logs enable monitoring of security-relevant events and subsequent forensics when breaches occur. For audit logs to be useful, administrators must have the ability to view them. SFR ID: FMT_SMF_EXT.1.1 #32
STIGDate
Honeywell Android 13 COBO Security Technical Implementation Guide2025-05-07

Related Frameworks

2 paths across 2 frameworks
NIST 800-531 mapping
  • DISA · V1R1 · disa_xccdf · related
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI1 mapping
CCI-000154
1.00
  • DISA · V1R1 · disa_xccdf · related

Details

Check Text (C-274317r1100404_chk)

Inspect the configuration on the managed Honeywell Android 13 device to enable audit logging. This validation procedure is performed only on the EMM Administration Console. On the EMM console: COBO and COPE: 1. Open "Device owner management" section. 2. Verify that "Enable security logging" is toggled to "ON". If the EMM console device policy is not set to enable audit logging, this is a finding.

Fix Text (F-78313r1100403_fix)

Configure the Honeywell Android 13 device to enable audit logging. On the EMM console: COBO and COPE: 1. Open "Device owner management" section. 2. Toggle "Enable security logging" to "ON".