| Checked | Name | Title |
|---|
| ☐ | SV-283484r1189863_rule | Zebra Android 14 must be configured to enable audit logging. |
| ☐ | SV-283507r1189932_rule | Zebra Android 14 must be configured to enforce a minimum password length of six characters. |
| ☐ | SV-283508r1189935_rule | Zebra Android 14 must be configured to not allow passwords that include more than four repeating or sequential characters. |
| ☐ | SV-283509r1189938_rule | Zebra Android 14 must be configured to lock the display after 15 minutes (or less) of inactivity. |
| ☐ | SV-283510r1189941_rule | Zebra Android 14 must be configured to not allow more than 10 consecutive failed authentication attempts. |
| ☐ | SV-283511r1189944_rule | Zebra Android 14 must be configured to enforce an application installation policy by specifying one or more authorized application repositories, including [selection: DOD-approved commercial app repository, MDM server, mobile application store]. |
| ☐ | SV-283512r1189947_rule | Zebra Android 14 must be configured to enforce an application installation policy by specifying an application allowlist that restricts applications by the following characteristics: [selection: list of digital signatures, cryptographic hash values, names, application version]. |
| ☐ | SV-283513r1189950_rule | Zebra Android 14 allowlist must be configured to not include applications with the following characteristics:
- Backs up mobile device (MD) data to non-DOD cloud servers (including user and application access to cloud backup services);
- Transmits MD diagnostic data to non-DOD servers;
- Voice assistant application if available when MD is locked;
- Voice dialing application if available when MD is locked;
- Allows synchronization of data or applications between devices associated with user;
- Payment processing;
- Allows unencrypted (or encrypted but not FIPS 140-2/140-3 validated) data sharing with other MDs or printers;
- Backs up own data to a remote system;
- Renders TV shows and movies. |
| ☐ | SV-283514r1189953_rule | Zebra Android 14 must be configured to not display the following (work profile) notifications when the device is locked: [selection:
a. email notifications
b. calendar appointments
c. contact associated with phone call notification
d. text message notification
e. other application-based notifications
f. all notifications]. |
| ☐ | SV-283518r1189965_rule | Zebra Android 14 must be configured to disable trust agents. |
| ☐ | SV-283520r1189971_rule | Zebra Android 14 must be configured to disable developer modes. |
| ☐ | SV-283523r1189980_rule | Zebra Android 14 must be configured to display the DOD advisory warning message at startup or each time the user unlocks the device. |
| ☐ | SV-283524r1189983_rule | Zebra Android 14 must be configured to generate audit records for the following auditable events: Detected integrity violations. |
| ☐ | SV-283528r1189995_rule | Zebra Android 14 must be configured to disable USB mass storage mode. |
| ☐ | SV-283529r1189998_rule | Zebra Android 14 must be configured to not allow backup of [all applications, configuration data] to locally connected systems. |
| ☐ | SV-283530r1190001_rule | Zebra Android 14 must be configured to not allow backup of [all applications, configuration data] to remote systems. |
| ☐ | SV-283531r1190004_rule | Zebra Android 14 must be configured to enable authentication of personal hotspot connections to the device using a preshared key. |
| ☐ | SV-283533r1190010_rule | Zebra Android 14 must be configured to disable multiuser modes. |
| ☐ | SV-283537r1190022_rule | Zebra Android 14 must be configured to disable all Bluetooth profiles except for HSP (Headset Profile), HFP (Hands-Free Profile), SPP (Serial Port Profile), A2DP (Advanced Audio Distribution Profile), AVRCP (Audio/Video Remote Control Profile), and PBAP (Phone Book Access Profile). |
| ☐ | SV-283538r1190025_rule | Zebra Android 14 must be configured to disable ad hoc wireless client-to-client connection capability. |
| ☐ | SV-283540r1190031_rule | Zebra Android 14 users must complete required training. |
| ☐ | SV-283541r1190034_rule | Zebra Android 14 must be configured to enforce that Wi-Fi Sharing is disabled. |
| ☐ | SV-283542r1190037_rule | Zebra Android 14 must have the DOD root and intermediate PKI certificates installed. |
| ☐ | SV-283543r1190040_rule | The Zebra Android 14 work profile must be configured to enforce the system application disable list. |
| ☐ | SV-283544r1190043_rule | Zebra Android 14 must be configured to disallow configuration of date and time. |
| ☐ | SV-283546r1190049_rule | Zebra Android 14 devices must have the latest available Zebra Android 14 operating system installed. |
| ☐ | SV-283547r1190052_rule | Android 14 devices must be configured to disable the use of third-party keyboards. |
| ☐ | SV-283548r1190055_rule | Android 14 devices must be configured to enable Common Criteria mode (CC mode). |
| ☐ | SV-283549r1190058_rule | Zebra Android 14 must be configured to disable all data signaling over [assignment: list of externally accessible hardware ports (for example, USB)]. |
| ☐ | SV-283550r1190061_rule | Zebra Android 14 must allow only the administrator (EMM) to install/remove DOD root and intermediate PKI certificates. |
| ☐ | SV-283551r1190064_rule | Zebra Android 14 must allow only the administrator (MDM) to perform the following management function: Disable Phone Hub. |
| ☐ | SV-283552r1190067_rule | Zebra Android 14 must disable the user's ability to wipe the device. |
| ☐ | SV-283553r1190070_rule | Zebra Android 14 must disable the use of assistants (including Zebra Assistant) unless required to meet Section 508 compliance requirements. |
| ☐ | SV-283554r1190073_rule | Zebra Android 14 must disable wireless printing. |
| ☐ | SV-283555r1190076_rule | Zebra Android 14 must disable screen capture. |
| ☐ | SV-283556r1190079_rule | Zebra Android 14 devices must have a Mobile Threat Detection (MTD) app installed. |
| ☐ | SV-283557r1190082_rule | Zebra Android 14 must implement the management setting: disable Camera. |