A remote employee using a corporate-managed smartphone reports receiving persistent untrusted certificate warnings while attempting to access company resources. An investigation reveals that an unapproved provisioning profile and a untrusted third-party root CA certificate were installed on the device, causing corporate traffic to be intercepted over an unencrypted channel. Which TWO of the following initial remediation steps should the technician perform to secure the device and restore proper connectivity? (Select TWO.)
- Remove the unapproved configuration profile and untrusted root certificate from the device settings.Answer
- Revoke device administrator privileges for unverified applications and remove unapproved sideloaded apps.Answer
- CContact the cellular service provider to issue a SIM swap and reset cell tower data routing.
- DReconfigure corporate RADIUS servers to bypass client-side CA certificate validation.
- EEnable OS developer mode and adjust local TCP IP stack socket parameters.
Answer
The technician should remove the unapproved configuration profile and untrusted root certificate from the device settings, and revoke device administrator privileges for unverified applications.
Removing the rogue configuration profile and untrusted root CA certificate directly removes the mechanism conducting traffic interception. Concurrently, revoking device administrative privileges from unverified applications removes persistent access rights that allowed the unauthorized changes to occur.
Step-by-Step Solution
Key Concept
Mobile Profile and Certificate Remediation