STIGQter STIGQter: STIG Summary: Network WLAN AP-NIPR Platform Security Technical Implementation Guide Version: 7 Release: 3 Benchmark Date: 27 Apr 2023:

WLAN SSIDs must be changed from the manufacturer's default to a pseudo random word that does not identify the unit, base, organization, etc.

DISA Rule

SV-243217r720106_rule

Vulnerability Number

V-243217

Group Title

SRG-NET-000512

Rule Version

WLAN-NW-000200

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

Change the SSID to a pseudo random word that does not identify the unit, base, or organization.

Check Contents

Review device configuration.

1. Obtain the SSID using a wireless scanner or the AP or WLAN controller management software.
2. Verify the name is not meaningful (e.g., site name, product name, room number, etc.) and is not set to the manufacturer's default value.

If the SSID does not meet the requirement listed above, this is a finding.

Vulnerability Number

V-243217

Documentable

False

Rule Version

WLAN-NW-000200

Severity Override Guidance

Review device configuration.

1. Obtain the SSID using a wireless scanner or the AP or WLAN controller management software.
2. Verify the name is not meaningful (e.g., site name, product name, room number, etc.) and is not set to the manufacturer's default value.

If the SSID does not meet the requirement listed above, this is a finding.

Check Content Reference

M

Target Key

5396