STIGQter STIGQter: STIG Summary: Honeywell Android 13 COBO Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 22 Apr 2025:

Honeywell Android 13 must be configured to display the DOD advisory warning message at startup or each time the user unlocks the device.

DISA Rule

SV-274299r1100350_rule

Vulnerability Number

V-274299

Group Title

PP-MDF-333160

Rule Version

HONW-13-007700

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

Configure the DOD warning banner by either of the following methods (required text is found in the Discussion):

1. By placing the DOD warning banner text in the user agreement signed by each Honeywell Android 13 device user (preferred method).
2. By configuring the warning banner text on the EMM console and installing the banner on each Honeywell Android 13 mobile device.

On the EMM console:

COBO:

1. Open "Lock screen restrictions".
2. Select "Lock screen message".
3. Enter in message.

COPE:

1. Open "Lock screen restrictions".
2. Select "Personal Profile".
3. Select "Lock screen message".
4. Enter in message.

Check Contents

The DOD warning banner can be displayed by either of the following methods (required text is found in the Discussion):

1. By placing the DOD warning banner text in the user agreement signed by each managed Android 13 device user (preferred method).
2. By configuring the warning banner text on the EMM console and installing the banner on each managed Android 13 mobile device.

Determine which method is used at the Honeywell Android 13 device site and follow the appropriate validation procedure below.

Validation Procedure for Method #1:
Review the signed user agreements for several Honeywell Android 13 device users and verify that the agreement includes the required DOD warning banner text.

Validation Procedure for Method #2:
On the EMM console:

COBO:

1. Open "Lock screen restrictions".
2. Select "Lock screen message".
3. Verify the message.

COPE:

1. Open "Lock screen restrictions".
2. Select "Personal Profile".
3. Select "Lock screen message".
4. Verify the message.

If, for Method #1, the required warning banner text is not on all signed user agreements reviewed, this is a finding.

If, for Method #2, the EMM console device policy is not set to display a warning banner with the appropriate designated wording, or on the managed Honeywell Android 13 device, the device policy is not set to display a warning banner with the appropriate designated wording, this is a finding.

Vulnerability Number

V-274299

Documentable

False

Rule Version

HONW-13-007700

Severity Override Guidance

The DOD warning banner can be displayed by either of the following methods (required text is found in the Discussion):

1. By placing the DOD warning banner text in the user agreement signed by each managed Android 13 device user (preferred method).
2. By configuring the warning banner text on the EMM console and installing the banner on each managed Android 13 mobile device.

Determine which method is used at the Honeywell Android 13 device site and follow the appropriate validation procedure below.

Validation Procedure for Method #1:
Review the signed user agreements for several Honeywell Android 13 device users and verify that the agreement includes the required DOD warning banner text.

Validation Procedure for Method #2:
On the EMM console:

COBO:

1. Open "Lock screen restrictions".
2. Select "Lock screen message".
3. Verify the message.

COPE:

1. Open "Lock screen restrictions".
2. Select "Personal Profile".
3. Select "Lock screen message".
4. Verify the message.

If, for Method #1, the required warning banner text is not on all signed user agreements reviewed, this is a finding.

If, for Method #2, the EMM console device policy is not set to display a warning banner with the appropriate designated wording, or on the managed Honeywell Android 13 device, the device policy is not set to display a warning banner with the appropriate designated wording, this is a finding.

Check Content Reference

M

Target Key

5701