STIGQter STIGQter: STIG Summary: Network WLAN AP-NIPR Platform Security Technical Implementation Guide Version: 7 Release: 3 Benchmark Date: 27 Apr 2023:

The site must conduct continuous wireless Intrusion Detection System (IDS) scanning.

DISA Rule

SV-243216r720103_rule

Vulnerability Number

V-243216

Group Title

SRG-NET-000383

Rule Version

WLAN-NW-000100

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Perform required WIDS scanning.

Check Contents

Interview the site ISSO. Determine if the scanning by a WIDS is being conducted and if it is continuous or periodic.

If a continuous scanning WIDS is used, there is no finding.

If periodic scanning is used, verify the exception to policy is documented and signed by the AO. Verify the exception meets one of the required criteria.

If periodic scanning is being performed but requirements have not been met, this is a finding.

If no WIDS scanning is being performed at the site, this is a finding.

Vulnerability Number

V-243216

Documentable

False

Rule Version

WLAN-NW-000100

Severity Override Guidance

Interview the site ISSO. Determine if the scanning by a WIDS is being conducted and if it is continuous or periodic.

If a continuous scanning WIDS is used, there is no finding.

If periodic scanning is used, verify the exception to policy is documented and signed by the AO. Verify the exception meets one of the required criteria.

If periodic scanning is being performed but requirements have not been met, this is a finding.

If no WIDS scanning is being performed at the site, this is a finding.

Check Content Reference

M

Target Key

5396