WN25-00-000332 - Windows Server 2025 must not have Wi-Fi enabled unless required by the organization.

Information

Unnecessary connections could increase the attack surface of a system. Some of these services may not support required levels of authentication or encryption.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

Validate the site documentation to ensure the approval of use for Wi-Fi server connections.

If the connection (s) have not been approved, go to 'Settings' then 'Network and Internet' and remove/disable the Wi-Fi adapter. Any Wi-Fi connections listed or in use must be documented and approved by the information system security officer (ISSO) or authorizing official (AO).

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_Windows_Server_2025_V1R1_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7b., CAT|II, CCI|CCI-000382, Rule-ID|SV-278017r1180757_rule, STIG-ID|WN25-00-000332, Vuln-ID|V-278017

Plugin: Windows

Control ID: adbb7de3bbfb915eeffa6d0832fe04de82b13cbd5db0c1269e310a641f67fd92