Check: NET0405
WLAN Controller STIG (STIG):
NET0405
(in versions v6 r15 through v6 r14)
Title
A service or feature that calls home to the vendor must be disabled. (Cat II impact)
Discussion
Call home services or features will routinely send data such as configuration and diagnostic information to the vendor for routine or emergency analysis and troubleshooting. The risk that transmission of sensitive data sent to unauthorized persons could result in data loss or downtime due to an attack.
Check Content
Review the device configuration to determine if the call home service or feature is disabled on the device. If the call home service is enabled on the device, this is a finding. Note: This feature can be enabled if the communication is only to a server residing in the local area network or enclave.
Fix Text
Configure the network device to disable the call home service or feature. Note: This feature can be enabled if the communication is only to a server residing in the local area network or enclave.
Additional Identifiers
Rule ID: SV-36774r5_rule
Vulnerability ID: V-28784
Group Title: Call home service is disabled.
Expert Comments
CCIs
Number | Definition |
---|---|
No CCIs are assigned to this check |
Controls
Number | Title |
---|---|
No controls are assigned to this check |