Information
The use of wireless networking can introduce many different attack vectors into the organization's network. Common attack vectors such as malicious association and ad hoc networks will allow an attacker to spoof a wireless access point (AP), allowing validated systems to connect to the malicious AP and enabling the attacker to monitor and record network traffic. These malicious APs can also serve to create a man-in-the-middle attack or be used to create a denial of service to valid network resources.
Satisfies: SRG-OS-000300-VMM-001070, SRG-OS-000299-VMM-001060, SRG-OS-000423-VMM-001700, SRG-OS-000481-VMM-002010
NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.
Solution
Configure the system to disable all wireless network interfaces.
Item Details
Category: ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION
References: 800-53|AC-18(1), 800-53|SC-8, CAT|II, CCI|CCI-001443, CCI|CCI-001444, CCI|CCI-002418, Group-ID|V-73127, Rule-ID|SV-250607r798820_rule, STIG-ID|GEN007841-ESXI5-000120, STIG-Legacy|SV-87779, STIG-Legacy|V-73127, Vuln-ID|V-250607
Control ID: 046da04bb358ea2a826d6dd95688ab1c8a835c7ae1d61ce2a60d9e5d84e700d4