Question

Difficulty: MediumTroubleshooting Mobile OS Security and Connectivity Issues

A technician is troubleshooting a corporate-managed mobile phone that recently began generating unexpected security warnings and routing network traffic through an unauthorized proxy. Inspection reveals that an end-user manually downloaded and installed an untrusted third-party configuration profile. Which TWO of the following steps should the technician take to resolve this security issue?

  1. Remove the untrusted configuration profile from the device security management settings.Answer
  2. Perform a forced sync and policy refresh from the Mobile Device Management (MDM) console.Answer
  3. C
    Contact the cellular service provider to report a localized network tower outage.
  4. D
    Reconfigure the corporate Wi-Fi network to use WPA2-Personal instead of 802.1X Enterprise authentication.
  5. E
    Clear the application cache and user data for the native phone dialer application.

Answer

To remediate the unauthorized proxy traffic and security warnings, the technician must remove the untrusted configuration profile from the device settings and initiate a forced policy sync via the Mobile Device Management (MDM) system.
Removing the untrusted profile directly eliminates the unauthorized root certificates and proxy configurations causing traffic redirection. Following up with a forced MDM policy sync ensures that official enterprise baselines and compliance policies are re-established on the mobile device.

Step-by-Step Solution

1
Identify and delete the unauthorized profile
The malicious profile, associated user trust certificates, and proxy redirection rules are removed from the operating system.
Untrusted profiles can alter system settings, install root certificates, and redirect device traffic through unauthorized middleboxes.
2
Initiate an MDM system sync
The mobile device retrieves and enforces official enterprise security compliance baselines.
A forced MDM refresh guarantees that required corporate security settings and valid credentials are intact.

Key Concept

Remediating unauthorized mobile profiles and restoring corporate MDM baselines
Rate this question