STIGQter STIGQter: STIG Summary: Network WLAN Bridge Platform Security Technical Implementation Guide Version: 7 Release: 2 Benchmark Date: 27 Apr 2023:

WLAN SSIDs must be changed from the manufacturer's default to a pseudo random word that does not identify the unit, base, organization, etc.

DISA Rule

SV-243227r720136_rule

Vulnerability Number

V-243227

Group Title

SRG-NET-000512

Rule Version

WLAN-NW-000200

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

Change the SSID to a pseudo random word that does not identify the unit, base, or organization.

Check Contents

Review device configuration.

1. Obtain the SSID using a wireless scanner or the AP or WLAN controller management software.
2. Verify the name is not meaningful (e.g., site name, product name, room number, etc.) and is not set to the manufacturer's default value.

If the SSID does not meet the requirement listed above, this is a finding.

Vulnerability Number

V-243227

Documentable

False

Rule Version

WLAN-NW-000200

Severity Override Guidance

Review device configuration.

1. Obtain the SSID using a wireless scanner or the AP or WLAN controller management software.
2. Verify the name is not meaningful (e.g., site name, product name, room number, etc.) and is not set to the manufacturer's default value.

If the SSID does not meet the requirement listed above, this is a finding.

Check Content Reference

M

Target Key

5397