Samsung Android 15 must prohibit DOD VPN profiles in the Personal Profile.
Overview
| Finding ID | Version | Rule ID | IA Controls | Severity |
| V-272525 | KNOX-15-700800 | SV-272525r1098451_rule | CCI-000067 | low |
| Description | ||||
| If DOD VPN profiles are configured in the Personal Profile, DOD sensitive data would be at risk of compromise and the DOD network could be at risk of being attacked by malware installed on the device. SFR ID: FMT_SMF.1.1 #3 | ||||
| STIG | Date | |||
| Samsung Android 15 MDFPP 3.3 BYOAD Security Technical Implementation Guide | 2025-04-29 | |||
Related Frameworks
3 paths across 3 frameworks
Related Frameworks
NIST 800-531 mapping
AC-17(1)
1.00
- DISA · 1 · disa_xccdf · related
- DISA · 2025-01-23 · disa_cci_list · equivalent
NIST 800-1711 mapping
3.1.12
1.00
- DISA · 1 · disa_xccdf · related
- DISA · 2025-01-23 · disa_cci_list · equivalent
- NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
CCI1 mapping
CCI-000067
1.00
- DISA · 1 · disa_xccdf · related
Details
Check Text (C-272525r1098451_chk)
Review the list of VPN profiles in the Personal Profile and determine if any VPN profiles are listed. If so, verify the VPN profiles are not configured with a DOD network VPN profile.
If any VPN profiles are installed in the Personal Profile and they have a DOD network VPN profile configured, this is a finding.
Note: This setting cannot be managed by the MDM administrator and is a User-Based Enforcement (UBE) requirement.
Fix Text (F-76511r1098450_fix)
Do not configure DOD VPN profiles in the Personal Profile.