The iOS/iPadOS 17 BYOAD must be configured to protect users' privacy, personal information, and applications.

Severity
Group ID
Group Title
Version
Rule ID
Date
STIG Version
lowV-259752PP-BYO-000120AIOS-17-800120SV-259752r943581_rule2024-01-311
Description
A key construct of a BYOAD is that user personal information and data are protected from exposure to the enterprise. Reference: DOD policy "Use of Non-Government Mobile Devices". 3.b.(4), 3.b.(5). SFR ID: FMT_SMF_EXT.1.1 #47
ℹ️ Check
Verify the EMM system has been configured to limit access to unmanaged data and apps on the iOS/iPadOS 17 BYOAD to protect users' privacy, personal information, and applications. The exact procedure will depend on the EMM system used at the site. If the BYOAD has not been configured to limit access to unmanaged data and apps on the iOS/iPadOS 17 BYOAD, this is a finding.
✔️ Fix
Configure the EMM system to limit access to unmanaged data and apps on the iOS/iPadOS 17 BYOAD to protect users' privacy, personal information, and applications. The exact procedure will depend on the EMM system used at the site.