| Checked | Name | Title |
|---|
| ☐ | SV-274378r1100704_rule | Honeywell Android 13 must be configured to enforce a minimum password length of six characters. |
| ☐ | SV-274379r1100707_rule | Honeywell Android 13 must be configured to not allow passwords that include more than four repeating or sequential characters. |
| ☐ | SV-274380r1100710_rule | Honeywell Android 13 must be configured to lock the display after 15 minutes (or less) of inactivity. |
| ☐ | SV-274381r1100713_rule | Honeywell Android 13 must be configured to not allow more than 10 consecutive failed authentication attempts. |
| ☐ | SV-274382r1100716_rule | Honeywell Android 13 must be configured to enforce an application installation policy by specifying one or more authorized application repositories, including [selection: DOD-approved commercial app repository, MDM server, mobile application store]. |
| ☐ | SV-274383r1100719_rule | Honeywell Android 13 must be configured to enforce an application installation policy by specifying an application allowlist that restricts applications by the following characteristics: [selection: list of digital signatures, cryptographic hash values, names, application version]. |
| ☐ | SV-274384r1100722_rule | Honeywell Android 13 allowlist must be configured to not include applications with the following characteristics:
- Backs up MD data to non-DOD cloud servers (including user and application access to cloud backup services);
- Transmits MD diagnostic data to non-DOD servers;
- Voice assistant application if available when MD is locked;
- Voice dialing application if available when MD is locked;
- Allows synchronization of data or applications between devices associated with user;
- Payment processing; and
- Allows unencrypted (or encrypted but not FIPS 140-3 validated) data sharing with other MDs, display screens (screen mirroring), or printers. |
| ☐ | SV-274385r1100725_rule | Honeywell Android 13 must be configured to not display the following (work profile) notifications when the device is locked: [selection:
a. email notifications
b. calendar appointments
c. contact associated with phone call notification
d. text message notification
e. other application-based notifications
f. all notifications]. |
| ☐ | SV-274389r1100737_rule | Honeywell Android 13 must be configured to disable trust agents. |
| ☐ | SV-274391r1100743_rule | Honeywell Android 13 must be configured to disable developer modes. |
| ☐ | SV-274394r1100752_rule | Honeywell Android 13 must be configured to display the DOD advisory warning message at startup or each time the user unlocks the device. |
| ☐ | SV-274395r1100755_rule | Honeywell Android 13 must be configured to generate audit records for the following auditable events: Detected integrity violations. |
| ☐ | SV-274399r1100767_rule | Honeywell Android 13 must be configured to disable USB mass storage mode. |
| ☐ | SV-274400r1100770_rule | Honeywell Android 13 must be configured to not allow backup of [all applications, configuration data] to locally connected systems. |
| ☐ | SV-274401r1100773_rule | Honeywell Android 13 must be configured to not allow backup of [all applications, configuration data] to remote systems. |
| ☐ | SV-274402r1100776_rule | Honeywell Android 13 must be configured to enable authentication of personal hotspot connections to the device using a preshared key. |
| ☐ | SV-274404r1100782_rule | Honeywell Android 13 must be configured to disable exceptions to the access control policy that prevent [selection: application processes, groups of application processes] from accessing [selection: all, private] data stored by other [selection: application processes, groups of application processes]. |
| ☐ | SV-274405r1100857_rule | Honeywell Android 13 must be configured to disable multiuser modes. |
| ☐ | SV-274409r1100797_rule | Honeywell Android 13 must be configured to disable Bluetooth or configured via User-Based Enforcement (UBE) to allow Bluetooth for only Headset Profile (HSP), Hands-Free Profile (HFP), and Serial Port Profile (SPP). |
| ☐ | SV-274410r1100859_rule | Honeywell Android 13 must be configured to disable ad hoc wireless client-to-client connection capability. |
| ☐ | SV-274411r1100864_rule | All mobile Honeywell cryptography must be configured to be in FIPS 140-3 validated mode. |
| ☐ | SV-274412r1100806_rule | Honeywell Android 13 must allow only the administrator (EMM) to install/remove DOD root and intermediate PKI certificates. |
| ☐ | SV-274413r1100809_rule | Honeywell Android 13 must be configured to enable audit logging. |
| ☐ | SV-274414r1100869_rule | Honeywell Android 13 users must complete required training. |
| ☐ | SV-274415r1100815_rule | Honeywell Android 13 must be configured to enforce that Wi-Fi Sharing is disabled. |
| ☐ | SV-274416r1100818_rule | Honeywell Android 13 must have the DOD root and intermediate PKI certificates installed. |
| ☐ | SV-274417r1100821_rule | The Honeywell Android 13 work profile must be configured to prevent users from adding personal email accounts to the work email app. |
| ☐ | SV-274418r1100824_rule | The Honeywell Android 13 work profile must be configured to enforce the system application disable list. |
| ☐ | SV-274419r1100863_rule | Honeywell Android 13 must be provisioned as a fully managed device and configured to create a work profile. |
| ☐ | SV-274420r1100830_rule | The Honeywell Android 13 work profile must be configured to disable automatic completion of workspace internet browser text input. |
| ☐ | SV-274421r1100833_rule | The Honeywell Android 13 work profile must be configured to disable the autofill services. |
| ☐ | SV-274422r1100836_rule | Honeywell Android 13 must be configured to disallow configuration of date and time. |
| ☐ | SV-274424r1100842_rule | Android 13 devices must have the latest available Honeywell Android 13 operating system installed. |
| ☐ | SV-274425r1100845_rule | Android 13 devices must be configured to disable the use of third-party keyboards. |
| ☐ | SV-274426r1100862_rule | Android 13 devices must be configured to enable Common Criteria (CC) mode. |
| ☐ | SV-274427r1100851_rule | Honeywell Android 13 must be configured to disable all data signaling over [assignment: list of externally accessible hardware ports (for example, USB)]. |