Check: WIR-MOS-AND-034-02
Android 2.2 (Dell) STIG:
WIR-MOS-AND-034-02
(in version v1 r2)
Title
All wireless PDA clients used for remote access to DoD networks must enable AES encryption for the VPN. (Cat II impact)
Discussion
DoD data could be compromised if transmitted data is not secured with a compliant VPN.
Check Content
This check is not applicable if the installed VPN client is not used for remote access to DoD networks. Interview the IAO and/or site wireless device administrator and inspect a sample (3-4) of site devices. Review VPN client specification sheets. Verify AES encryption is enabled for the VPN client. Mark as a finding if AES is not supported or is not enabled.
Fix Text
Use only AES encryption with VPN client.
Additional Identifiers
Rule ID: SV-35005r1_rule
Vulnerability ID: V-19897
Group Title:
Expert Comments
Expert comments are only available to logged-in users.
CCIs
CCIs tied to check.
Number | Definition |
---|---|
No CCIs are assigned to this check |
Controls
Controls tied to check. These are derived from the CCIs shown above.
Number | Title |
---|---|
No controls are assigned to this check |