STIGhubSTIGhub
STIGsRMF ControlsCompare
STIGhub— A free STIG search and compliance tool·STIGs updated 3 days ago
Powered by Pylon·Privacy·Terms·© 2026 Beacon Cloud Solutions, Inc.
← Back to Google Android 13 BYOAD Security Technical Implementation Guide

V-258475

CAT III (Low)

Google Android 13 must prohibit DOD VPN profiles in the Personal Profile.

Rule ID

SV-258475r1120908_rule

STIG

Google Android 13 BYOAD Security Technical Implementation Guide

Version

V1R3

CCIs

CCI-000366CCI-000370

Discussion

If DOD VPN profiles are configured in the Personal Profile DOD sensitive data world be at risk of compromise and the DOD network could be at risk of being attacked by malware installed on the device. SFR ID: FMT_SMF_EXT.1.1 #3

Check Content

Review the list of VPN profiles in the Personal Profile and determine if any VPN profiles are listed. If so, verify the VPN profiles are not configured with a DOD network VPN profile. 

If any VPN profiles are installed in the Personal Profile and they have a DOD network VPN profile configured, this is a finding.

Note: This setting cannot be managed by the MDM administrator and is a User-Based Enforcement (UBE) requirement.

Fix Text

Do not configure DOD VPN profiles in the Personal Profile.