Xiaomi Redmi Note 8 Pro 64Gb+6Gb Dual LTE [120/132] Data storage encryption

Xiaomi Redmi Note 8 Pro 64Gb+6Gb Dual LTE [120/132] Data storage encryption
[C-1-1] MUST have an ongoing notification to the user whenever this functionality is
enabled and actively capturing/recording.
If device implementations include a component enabled out-of-box, capable of recording ambient
audio to infer useful information about user’s context, they:
[C-2-1] MUST NOT store in persistent on-device storage or transmit off the device the
recorded raw audio or any format that can be converted back into the original audio or a
near facsimile, except with explicit user consent.
9.8.3. Connectivity
If device implementations have a USB port with USB peripheral mode support, they:
[C-1-1] MUST present a user interface asking for the user's consent before allowing
access to the contents of the shared storage over the USB port.
9.8.4. Network Traffic
Device implementations:
[C-0-1] MUST preinstall the same root certificates for the system-trusted Certificate
Authority (CA) store as provided in the upstream Android Open Source Project.
[C-0-2] MUST ship with an empty user root CA store.
[C-0-3] MUST display a warning to the user indicating the network traffic may be
monitored, when a user root CA is added.
If device traffic is routed through a VPN, device implementations:
[C-1-1] MUST display a warning to the user indicating either:
That network traffic may be monitored.
That network traffic is being routed through the specific VPN application
providing the VPN.
If device implementations have a mechanism, enabled out-of-box by default, that routes network data
traffic through a proxy server or VPN gateway (for example, preloading a VPN service with
android.permission.CONTROL_VPN granted), they:
[C-2-1] MUST ask for the user's consent before enabling that mechanism, unless that VPN
is enabled by the Device Policy Controller via the DevicePolicyManager.setAlwaysOnVpnPackage()
, in which case the user does not need to provide a separate consent, but MUST only be
notified.
If device implementations implement a user affordance to toggle on the "always-on VPN" function of
a 3rd-party VPN app, they:
[C-3-1] MUST disable this user affordance for apps that do not support always-on VPN
service in the AndroidManifest.xml file via setting the
SERVICE_META_DATA_SUPPORTS_ALWAYS_ON attribute to false .
9.9. Data Storage Encryption
If Advanced Encryption Standard (AES) crypto performance, measured with the most performant AES
Page 120 of 132

Содержание

Похожие устройства

Скачать