Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-33092 | SRG-OS-000116-MOS-000069 | SV-43490r1_rule | Medium |
Description |
---|
WPA2 is a Wi-Fi certification managed by the Wi-Fi Alliance, a trade association promoting technology based on the IEEE 802.11 communications standard. A product that has received WPA2 certification has demonstrated that it is compliant with the 802.11i amendment defining robust security networks. Products that have not received this certification are significantly more likely to have vulnerabilities associated with user and device authentication and the confidentiality and integrity of user data. |
STIG | Date |
---|---|
Mobile Operating System Security Requirements Guide | 2012-10-01 |
Check Text ( C-41351r1_chk ) |
---|
Review the mobile operating system configuration for the Wi-Fi module to be WPA2 certified. If the Wi-Fi module is not WPA2 certified for both enterprise and personal, this is a finding. |
Fix Text (F-36992r1_fix) |
---|
Configure the mobile operating system's Wi-Fi module to use a WPA2 certified (enterprise and personal) version. |