Check: WIR1435-01
BlackBerry Enterprise Server, Part 3:
WIR1435-01
(in versions v2 r10 through v2 r8)
Title
IT Policy rule Disable Wi-Fi must be set as required. (Cat III impact)
Discussion
Improperly configured WLAN systems can expose the BlackBerry device and DoD network to attack.
Check Content
Detail Policy Requirements: If BlackBerry Wi-Fi service is not authorized for use at the site, the following conditions apply: A BlackBerry WLAN IT policy has been set up for the site on the BES and is configured as shown in Table 1, BlackBerry STIG Configuration Tables. *****Set IT Policy rule "Disable Wi-Fi" (WLAN policy group) to "Yes". If WLAN use is authorized, set to "No". Check procedures: This is a BES IT Policy check. Recommend all checks related to BES IT policies be reviewed using the procedure in Check WIR1400-01 (V0003545). Interview the BES Administrator and determine if BlackBerry Wi-Fi is authorized. *****Verify "Disable Wi-Fi" has been configured as required. If not set as required, this is a finding.
Fix Text
Configure the IT Policy rule as specified in the "Checks" block.
Additional Identifiers
Rule ID: SV-17045r5_rule
Vulnerability ID: V-16058
Group Title:
Expert Comments
CCIs
Number | Definition |
---|---|
No CCIs are assigned to this check |
Controls
Number | Title |
---|---|
No controls are assigned to this check |