Rule ID
SV-207438r958678_rule
Version
V2R3
CCIs
Allowing devices and users to connect to the system without first authenticating them allows untrusted access and can lead to a compromise or attack. Wireless technologies include, for example, microwave, packet radio (UHF/VHF), 802.11x, and Bluetooth. Wireless networks use authentication protocols (e.g., EAP/TLS, PEAP), which provide credential protection and mutual authentication. This requirement applies to those VMMs that control wireless devices.
Verify the VMM protects wireless access to the system using authentication of users and/or devices. If it does not, this is a finding.
Configure the VMM to protect wireless access to the system using authentication of users and/or devices.