SV-278823r1150716_rule
V-278823
PP-MDF-993300
AIOS-26-014800
CAT II
10
If the AO has not approved the use of Apple Watch with DOD-owned iPhones, configure the Apple iOS configuration profile to disable "Allow auto unlock".
The procedure for implementing this control will vary depending on the MDM/EMM used by the mobile service provider.
In the MDM console, set "Allow auto unlock" to "False".
Configuration Profile Key: allowAutoUnlock
This requirement will become "Supervised only" in a future iOS/iPadOS release.
Review configuration settings to confirm "Allow Auto Unlock" is disabled.
This check procedure is performed on the device management tool.
Note: If an organization has multiple configuration profiles, the check procedure must be performed on the relevant configuration profiles applicable to the scope of the review.
In the iOS management tool, verify "Allow auto unlock" is not checked.
If Allow auto unlock is enabled, this is a finding.
This requirement will become "Supervised only" in a future iOS/iPadOS release.
V-278823
False
AIOS-26-014800
Review configuration settings to confirm "Allow Auto Unlock" is disabled.
This check procedure is performed on the device management tool.
Note: If an organization has multiple configuration profiles, the check procedure must be performed on the relevant configuration profiles applicable to the scope of the review.
In the iOS management tool, verify "Allow auto unlock" is not checked.
If Allow auto unlock is enabled, this is a finding.
This requirement will become "Supervised only" in a future iOS/iPadOS release.
M
5723