Check: WN08-MO-000005
Windows 8/8.1 STIG:
WN08-MO-000005
(in versions v1 r23 through v1 r16)
Title
Bluetooth must be turned off unless approved by the organization. (Cat II impact)
Discussion
If not configured properly, Bluetooth may allow rogue devices to communicate with a system. If a rogue device is paired with a system, there is potential for sensitive information to be compromised. DoD policy and Wireless STIG guidance must be implemented with the use of Bluetooth.
Check Content
Verify the Bluetooth radio is turned off unless approved by the organization. If it is not, this is a finding. Approval must be documented with the ISSO. If the system does not have Bluetooth, this is not applicable.
Fix Text
Turn off Bluetooth radios not organizationally approved. Establish an organizational policy for the use of Bluetooth.
Additional Identifiers
Rule ID: SV-48432r3_rule
Vulnerability ID: V-36757
Group Title: WN08-MO-000005
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000381 |
Configure the system to provide only organization-defined mission essential capabilities. |
Controls
Number | Title |
---|---|
CM-7 |
Least Functionality |