Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-11866 | WIR1040-02 | SV-12366r10_rule | ECWN-1 | Low |
Description |
---|
Insecure Bluetooth configuration on the PC could make it vulnerable to compromise via a Bluetooth attack. |
STIG | Date |
---|---|
BlackBerry Handheld Device Security Technical Implementation Guide | 2011-04-11 |
Check Text ( C-14985r4_chk ) |
---|
Detailed Policy Requirements: When the BlackBerry Bluetooth SCR is used as a PC SCR, the following requirements must be followed: - The DAA must approve the use of a Bluetooth smart card reader with command/site PCs. Check Procedures: Interview the IAO and wireless email system administrator. Determine if use of the Blackberry SCR with site PCs has been approved. If Yes, verify the following requirements are met: - The DAA has approved the use of the RIM BlackBerry SCR with site PCs. Have the IAO provide documentation showing DAA approval (letter, memo, SSP, etc.). |
Fix Text (F-23344r1_fix) |
---|
BlackBerry Bluetooth SCR use with site PCs must be compliant with requirements. |