Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-35934 | SRG-MPOL-016 | SV-47250r1_rule | Medium |
Description |
---|
Wireless technologies include, but are not limited to, microwave, satellite, packet radio (UHF/VHF), Wi-Fi, and Bluetooth. Wireless networks present similar security risks to those of a wired network, and since the open airwaves are the communications medium for wireless technology, an entirely new set of risks are introduced. Implementing wireless computing and networking capabilities in accordance with the organization defined wireless policy, and allowing only authorized and qualified personnel to configure wireless services, greatly reduces vulnerabilities. |
STIG | Date |
---|---|
Mobile Policy Security Requirements Guide | 2013-07-03 |
Check Text ( C-44171r1_chk ) |
---|
Review the organization's access control policy, security procedures addressing wireless implementation, and other relevant documents to ensure the organization has established clear guidance for the implementation of wireless access. If the site does not have clear guidance established for implementation, this is a finding. |
Fix Text (F-40458r1_fix) |
---|
Establish clear guidance for the implementation of wireless access within the organization's boundaries/enclave/area of responsibility. |